SecurityBrief Canada - Technology news for CISOs & cybersecurity decision-makers

ReliaQuest stories

Smartphone suspicious call laptop fake login deceptive subdomain scene

ShinyHunters pivots to subdomain phishing & vishing

Last month
#
saas
#
mfa
#
cloud security
ShinyHunters shifts to subdomain-brand phishing and vishing on mobiles, bypassing domain checks to hijack SSO logins and SaaS sessions.
Dark server room ai cyber attack red network path spreading

AI-driven cyber attacks now breach networks in minutes

Last month
#
malware
#
firewalls
#
ransomware
AI-fuelled hackers can now spread across corporate networks in as little as four minutes, outpacing human defenders by hours.
Moody windows server room red rack cracked email lock binary

SmarterMail flaw exploited in China-linked ransomware push

Last month
#
firewalls
#
vpns
#
ransomware
China-linked Warlock ransomware group exploits SmarterMail flaw for admin takeovers, chaining features to gain full Windows control.
Moody corporate office night remote access malware attack scene

Screensaver phishing installs remote access tools covertly

Last month
#
storage
#
firewalls
#
ransomware
Attackers are abusing Windows screensaver files in a spearphishing campaign to stealthily install remote access tools on business systems.
Office pc social network warning suspicious file download cursor

LinkedIn DMs abused to spread Python-based malware

Wed, 21st Jan 2026
#
firewalls
#
endpoint protection
#
devops
Attackers are abusing LinkedIn private messages to deliver Python-based malware via booby-trapped archives, ReliaQuest has warned.
Malaysia office worker laptop warning social engineering cert abuse

ReliaQuest warns of BaoLoader surge & trust attacks

Thu, 15th Jan 2026
#
firewalls
#
ransomware
#
network security
ReliaQuest warns BaoLoader and trust-based lures are surging, as attackers ditch zero-days for social engineering and valid certificates.
Dark server room ransomware attack shadowy hacker hands locks

Storm-0249 hijacks security tools to fuel ransomware

Wed, 7th Jan 2026
#
malware
#
firewalls
#
ransomware
Storm-0249 hijacks trusted security and Windows tools to stealthily broker high-value network access for ransomware operators.
Covert cyber espionage software download bug warning china russia

Chinese hackers fake Teams downloads in false flag ploy

Thu, 18th Dec 2025
#
malware
#
uc
#
martech
Chinese state-backed hackers mimic Microsoft Teams downloads in a false flag campaign to infect Chinese speakers and blame Russian actors.
Cloud security multiple padlocks open broken people keys digital network

Cloud breaches driven by identity failures & process flaws

Thu, 6th Nov 2025
#
malware
#
cloud security
#
phishing
ReliaQuest reveals identity compromises and process flaws, not zero-day exploits, drive most cloud breaches, with 99% of cloud identities still over-privileged.
Hooded figure at computer red warnings on digital infrastructure global map

Ransomware surge in Q3 2025 as new alliances target more sectors

Thu, 9th Oct 2025
#
ransomware
#
encryption
#
cybersecurity
Ransomware attacks hit a record in Q3 2025 as new alliances broaden targets to sectors like healthcare and critical infrastructure worldwide.
Realistic illustration masked figure dark hoodie laptop dimly lit room cyber attack

Breakout time drops as new attacker tactics surge in cyber threat space

Thu, 25th Sep 2025
#
firewalls
#
ransomware
#
network security
ReliaQuest reports cyber attackers cut breakout time to 18 minutes, with surging threats from Oyster malware and rising abuse of USB and IP-KVM devices.
Email phishing attack computer screen hook envelope cybersecurity threats

Axios-driven phishing soars 241% as attackers bypass defences

Fri, 12th Sep 2025
#
mfa
#
phishing
#
advanced persistent threat protection
Phishing attacks using the Axios user agent surged 241% by August 2025, bypassing defences with Microsoft Direct Send to steal credentials at high rates.
Illustration hooded cybercriminals typing shadowy servers cyber attacks cloud

ShinyHunters & Scattered Spider escalate attacks on Salesforce

Thu, 14th Aug 2025
#
mfa
#
cloud security
#
martech
Cybercriminal groups ShinyHunters and Scattered Spider have escalated phishing attacks on Salesforce and major firms like Google, signalling possible collaboration.
Ai powered digital figures assisting human cybersecurity analysts at monitors

ReliaQuest unveils AI teammates to boost predictive security

Wed, 30th Jul 2025
#
cloud security
#
advanced persistent threat protection
#
ai
ReliaQuest launches GreyMatter Agentic Teammates, AI agents that boost security teams by automating routine tasks and enhancing predictive cyber defence.
Complex network interconnected devices with vulnerability warnings modern graphic

Digital attack surfaces expand as key exposures & risks double

Fri, 25th Jul 2025
#
malware
#
data protection
#
ransomware
Organisations face doubled key cyber exposure risks as digital attack surfaces widen, with exposed ports and credentials surging in early 2025, says ReliaQuest.
Realistic hooded figure dimly lit room computer screens faces manipulated deepfakes cybercrime

Cyber attackers use AI to automate exploits & sell deepfakes

Fri, 18th Jul 2025
#
malware
#
firewalls
#
network security
Cyber attackers now exploit AI to automate vulnerability scans and sell realistic deepfakes, boosting the scale and sophistication of cybercrime worldwide.
Detailed illustration security operations center analysts monitoring threats

ReliaQuest launches GreyMatter automation to speed threat response

Fri, 27th Jun 2025
#
uc
#
cloud security
#
advanced persistent threat protection
ReliaQuest unveils GreyMatter Workflows, automating security operations to cut response times by 64% and reduce manual tasks by over half.
Human hand reaching for computer mouse shadowy figure manipulating wires cyber threats social engineering

ReliaQuest report exposes rise of social engineering cyber threats

Thu, 19th Jun 2025
#
ransomware
#
phishing
#
advanced persistent threat protection
ReliaQuest reveals surge in social engineering cyber threats, with ClickFix tactics and ransomware group shifts raising new security challenges in 2025.
Computer screen phishing message popup shadowy hooded figure cyber threats

ReliaQuest details Black Basta's legacy & rise of Teams phishing

Thu, 12th Jun 2025
#
ransomware
#
phishing
#
email security
ReliaQuest reveals Black Basta's fall and warns former affiliates persist with Teams phishing and Python-enabled ransomware tactics post-February 2025.
Abstract dark web marketplace digital locks binary code cybercrime russian theme

Russian Market remains key player in cyber credential theft

Tue, 3rd Jun 2025
#
saas
#
malware
#
cloud security
Russian Market remains pivotal in cyber credential theft, with over 136,000 alerts in 2024 for stolen credentials sold at just USD $2 each.