Incident Response stories - Page 2
Manufacturing leads ransomware targets in 2025 report
Last week
#
dr
#
vpns
#
ransomware
Manufacturing was the most targeted sector for ransomware in 2025, as Check Point counted 1,466 attacks worldwide amid rising supply chain exposure.
Claroty adds Visibility Orchestration to xDome platform
Last week
#
saas
#
manufacturing
#
digital transformation
Claroty boosts xDome with Visibility Orchestration to turn patchy cyber-physical asset data into prioritised security tasks across critical operations.
Security teams want AI tools under human oversight
Last week
#
firewalls
#
digital transformation
#
network security
Survey finds 77% of security professionals want AI tools in security operations kept under human oversight, as 88% adopt guardrails.
Former Black Basta affiliates target executives in Teams
Last week
#
uc
#
mfa
#
phishing
ReliaQuest says suspected former Black Basta operators are bombarding staff with emails and posing as IT support in Microsoft Teams to reach senior executives.
Bitdefender launches GravityZone email security for MSPs
Last week
#
ransomware
#
endpoint protection
#
hybrid cloud
Bitdefender adds integrated email defence to GravityZone, giving MSPs and businesses post-delivery protection against phishing, ransomware and BEC.
TrendAI partners Anthropic to embed Claude in security ops
Last week
#
firewalls
#
digital transformation
#
network security
TrendAI and Anthropic join forces to embed Claude in Vision One, targeting AI vulnerability research and automated cyber defences.
Proofpoint flags mailbox rule abuse in Microsoft 365
Last week
#
edutech
#
mfa
#
cloud security
Proofpoint says mailbox rule abuse is becoming a routine Microsoft 365 takeover tactic, helping attackers hide alerts, hijack threads and drive fraud.
AI shifts IT roles towards orchestration, SolarWinds says
Last week
#
hybrid cloud
#
digital transformation
#
it automation
SolarWinds research finds AI is pushing IT staff into more strategic oversight, as governance and trust become key to using new tools effectively.
Gigamon eyes AI-led surge in network observability
Last week
#
virtualisation
#
firewalls
#
hybrid cloud
Gigamon unveils AI traffic tools as IDC says network observability market will reach USD $4.39 billion by 2029.
Cyber teams unready for major attack, Sygnia finds
Last week
#
ransomware
#
digital transformation
#
public cloud
Most companies lack confidence in cyber defences as a Sygnia survey finds major gaps in visibility, coordination and board-level readiness.
WatchGuard & HaloPSA integrate security tools for MSPs
Last week
#
firewalls
#
digital transformation
#
network security
WatchGuard and HaloPSA deepen ties to let managed service providers handle security alerts, licensing and billing from one workflow.
Numecent links Cloudpager to Citrix Studio for VDI
Last week
#
virtualisation
#
dr
#
hybrid cloud
Numecent adds native Cloudpager integration to Citrix Studio, letting administrators package apps for VDI without bloating desktop images.
N-able launches MCP server and N-zo AI for UEM ops
Last week
#
digital transformation
#
it automation
#
socs
N-able adds an MCP server and in-product assistant for N-central and N-sight, aiming to bring real-time AI action to managed IT operations.
Identity crisis as machine accounts outnumber humans
Last week
#
pam
#
cloud security
#
iot security
Machine accounts and AI agents are now eclipsing human users in many IT estates, prompting warnings that outdated identity controls are no longer enough.
CIOs rank AI as a growing cyber risk, survey finds
Last week
#
malware
#
data protection
#
ransomware
Logicalis survey finds 77% of firms hit by cyber incidents as CIOs warn AI is adding fresh risk, with weak governance and skills shortages deepening exposure.
Booking.com warns some customers of possible data exposure
Last week
#
data protection
#
endpoint protection
#
mfa
Booking.com tells some customers to watch for phishing after suspicious activity exposed reservation details, contact data and messages linked to bookings.
Small alert, big defense: Inside a SOC's early-morning response
This month
#
vpns
#
ransomware
#
mfa
UK SOC spots Monday-morning conditional access failure from Germany, helps reset compromised Microsoft 365 account before attackers can strike.
Singapore cyberattacks rise 22% as global attacks fall
This month
#
malware
#
firewalls
#
data protection
Singapore organisations hit by 22% more cyberattacks in March, with consumer-facing and public sectors most exposed amid rising GenAI data-leak risks.
Anthropic launches Project Glasswing for cyber defence
This month
#
firewalls
#
hyperscale
#
network security
Anthropic enlists Amazon, Apple and Microsoft in Project Glasswing to use Claude Mythos Preview for hunting vulnerabilities in critical software.
Attackers exploit trust in Blackpoint Cyber report
This month
#
pam
#
mfa
#
cloud security
Blackpoint Cyber warns attackers are increasingly slipping in through trusted credentials, VPNs and remote tools, with fake CAPTCHA scams leading incidents.