Social Engineering stories
As AI spreads through core business functions, executives warn weak oversight could expose firms to deepfakes, fraud and costly incidents.
The service targets a gap in corporate defences as hackers increasingly use executives' personal devices, homes and families to gain access.
AI-driven phishing and state-linked espionage are pushing Asia-Pacific incident numbers higher, with data breaches still the biggest threat.
Shoppers in the UK and Europe face a growing risk of cloned retail sites as Gen blocked 114.2 million fake e-shop attacks in six months.
Generative AI is helping Tehran speed up phishing, malware and influence campaigns, while making attacks harder to attribute.
Mac users were lured via Google ads and shared Claude chats into installing malware that steals passwords, files and wallet data.
Attackers can stay inside WhatsApp accounts after a single fake device approval, exposing messages, calls and contacts without alerts.
Access to ChatGPT and GPT-5.6 is being tightened for some accounts as OpenAI moves to hardware-backed passkeys amid rising phishing risk.
Attackers can now weaponise newly disclosed flaws in hours, leaving businesses exposed unless security teams move to real-time oversight.
Rising AI-driven attacks are compel security buyers to cut vendor sprawl, though Check Point warns over-consolidation can still raise risk.
Account takeovers are becoming harder to stop as attackers use real-time code theft and fake login pages to bypass Microsoft 365 MFA.
Customers can now buy KnowBe4's security tools through AWS Marketplace, speeding deployment as firms race to protect employees and AI agents.
Security teams face faster, harder-to-trace intrusions as AI is now being used to write attack code and run deception during breaches.
Users relying on SMS or voice for sign-ins will be nudged to passkeys as Microsoft phases out weaker multifactor methods in Entra ID.
Firms say the bigger payoff now lies in embedding AI into logistics, security and data systems, while poor governance leaves firms exposed.
Public agencies risk ransomware within seconds as attackers exploit identities, cloud tools and virtualisation layers, Google warns.
Businesses risk false confidence if they meet the ACSC framework but leave staff exposed to phishing, social engineering and fake MFA prompts.
Critical infrastructure and healthcare lag peers on basic cyber controls, leaving essential services more exposed than financial firms and technology groups.
Breaches across New Zealand are increasingly exploiting human trust, with thieves using logins and one-time codes to steal data and funds.
Online shoppers in New Zealand face a sharper risk of fraud as fake stores and remote access attacks exploit trusted digital services.