TelcoNews Australia - Telecommunications news for ICT decision-makers

Threat intelligence stories - Page 2

Flux result 15f42594 4ff5 453e a52e 0198b3f21283

iProov report warns of soaring iOS injection attacks

Last week
#
uc
#
data protection
#
devops
iProov warns iOS injection attacks surged 1,151% in late 2025 as generative AI fuels deepfake impersonation and identity fraud.
Flux result 12f8aff4 dbb2 4670 b3c6 a89d32ca8e99

Microsoft 365 EvilToken campaign hits hundreds daily

Last week
#
mfa
#
cloud security
#
phishing
Microsoft warns that 10 to 15 EvilToken phishing runs are launched daily, compromising hundreds of organisations through OAuth token abuse.
Flux result e112a964 d384 4305 af87 b1a2a4c0ee5c

Qualys warns attackers exploit flaws before disclosure

Last week
#
firewalls
#
vpns
#
network security
Qualys says attackers are exploiting flaws before disclosure as remediation backlogs swell, with edge devices facing the highest risk.
Andrew philp

TrendAI: Evolving the cybersecurity value proposition

Last week
#
hybrid cloud
#
digital transformation
#
cloud security
TrendAI urges stronger AI governance as it shifts cybersecurity from fear-based selling to platformised risk reduction for Australian firms.
Flux result 2a0e4632 8072 4ed3 9f1d 043e15c75687

Microsoft warns of Storm-1175's rapid Medusa attacks

Last week
#
ransomware
#
cybersecurity
#
microsoft
Microsoft says Storm-1175 is exploiting newly disclosed flaws within hours, hitting organisations in the UK and elsewhere with fast-moving Medusa ransomware.
Flux result 5bc20294 f694 45cf a431 a8f15488d1a5

Qualys warns exploitation is outpacing manual patching

Last week
#
firewalls
#
vpns
#
network infrastructure
Qualys study says attackers are exploiting flaws before patches exist, as manual remediation lags and edge systems emerge as the highest risk.
Flux result 8ebd1272 347f 4407 acbc d4999522fad4

Permiso launches sandbox for AI agent skill security

Last week
#
firewalls
#
network security
#
cloud security
Permiso launches SandyClaw sandbox to detonate AI agent skills and expose hidden runtime risks before they reach enterprise systems.
04062026001

China-aligned TA416 resumes spying on EU & Mideast

Last week
#
phishing
#
email security
#
cybersecurity
China-linked TA416 returns to spying on European diplomats and later expands attacks to Middle Eastern government targets after Iran conflict.
Vulnetix

Vulnetix named Australia's first global CVE authority

Last week
#
malware
#
digital transformation
#
cloud security
Vulnetix expands AI coding defences as Australia's first Global CVE Numbering Authority, opening vulnerability tools to developers nationwide.
Flux result ce4cb7f0 cf50 4830 a4ec b982992c1a8f

Attackers turn trusted tools into cyber weapon

This month
#
malware
#
ransomware
#
advanced persistent threat protection
Attackers abuse trusted tools, remote support software and stolen SSO sessions to breach systems, ReliaQuest says.
Flux result 90eaede9 aa56 4c13 8366 8ed95a3e19a8

Cloud security turns to identity, access & sovereignty

This month
#
data protection
#
hyperscale
#
pam
Executives at Docusign, BeyondTrust and Saviynt say identity, data sovereignty and tighter access controls are now shaping cloud security priorities.
Cloud security experts

Cloud security experts warn of control plane risks

This month
#
firewalls
#
data protection
#
hybrid cloud
Cloud security specialists say organisations must rethink defences as control plane exposure, swelling telemetry and fragmented tools create fresh risks.
Flux result 40d5bcdc 27bf 48a0 8c08 a87cb6325b88

Zscaler flags Xloader malware's tougher obfuscation

This month
#
malware
#
firewalls
#
encryption
Zscaler says Xloader malware has added layered encryption, decoy servers and new obfuscation tricks to hinder analysts.
Flux result f452b7e2 77ad 41cf 8342 a15ea8ce623a

Google links axios attack to suspected North Korean actor

This month
#
devops
#
advanced persistent threat protection
#
supply chain
Google says the axios npm supply chain attack was linked to suspected North Korean actor UNC1069, raising fears for Australian and New Zealand firms.
Flux result 6459960a 8b91 4ad1 9ab4 cab1e0e740d2

DeepLoad malware steals credentials via ClickFix campaign

This month
#
malware
#
firewalls
#
network infrastructure
ReliaQuest flags DeepLoad malware stealing live credentials in enterprise networks, with AI-style obfuscation, USB spread and hidden WMI persistence.
Flux result 0140b590 dfa2 4fdb 8cad 8fa28d461048

Firms warned on ransomware amid backup & AI sprawl

This month
#
saas
#
firewalls
#
data protection
Experts warn firms must improve visibility and backup resilience as automated ransomware campaigns and hidden SaaS and AI assets widen exposure.
Flux result 600dd12e b693 45cc 8e4a 8dfc977dd7c1

Bitdefender launches free attack surface assessment

This month
#
firewalls
#
network security
#
pam
Bitdefender offers free 45-day internal security check to spot over-entitled staff access as attackers increasingly abuse trusted tools.
Sunil sapra  co founder and chief growth officer  eventus security

Eventus Security wins four Global InfoSec awards

This month
#
advanced persistent threat protection
#
socs
#
risk & compliance
Eventus Security's AI-led platform earns four Global InfoSec honours at RSAC as the firm's managed detection and response offering gains fresh momentum.
Crowdstrike

CrowdStrike & HCLTech launch continuous threat service

This month
#
data protection
#
hybrid cloud
#
digital transformation
CrowdStrike and HCLTech deepen cybersecurity tie-up with a service to spot, prioritise and fix threats across cloud, identity and endpoints.
Flux result d2cebe18 95d7 46b4 b7a5 7ed6eb834b59

SonicWall flags SMB cyber gaps as attacks rise 20.8%

This month
#
firewalls
#
vpns
#
ransomware
SonicWall says small firms are being hit hardest by basic security lapses as ransomware, bot traffic and identity theft keep climbing.