SecurityBrief Canada - Technology news for CISOs & cybersecurity decision-makers

Threat actors stories - Page 6

Illustration computer server virtual machines shadowy malware network wires secure data center

Curly COMrades abuse Hyper-V for covert malware operations in VMs

Wed, 5th Nov 2025
#
malware
#
virtualisation
#
firewalls
Curly COMrades exploit Microsoft Hyper-V to run hidden malware inside lightweight VMs, evading detection and maintaining stealthy control over targets.
Stressed businessperson office desk locked computer digital padlocks masked figures

Ransom payment rates drop to historic low as attackers adapt

Thu, 30th Oct 2025
#
ransomware
#
crypto
#
phishing
Ransom payments fell to a historic low of 23% in Q3 2025 as cyber extortion tactics shift towards targeted, costlier attacks on larger firms.
Hooded figure computer dark room multiple screens abstract encrypted code cyber attack

Ransomware groups surge as automation cuts attack time to 18 mins

Thu, 23rd Oct 2025
#
ransomware
#
encryption
#
advanced persistent threat protection
Automation and AI slash ransomware attack times to 18 minutes, challenging defenders to match speed with automated defences, says ReliaQuest report.
Computer screen map network connections warning markers cyber threat detection security operations center

Expel Intel launches to deliver actionable threat intelligence insights

Thu, 9th Oct 2025
#
advanced persistent threat protection
#
socs
#
cybersecurity
Expel has launched Expel Intel, a new team providing actionable cyber threat insights based on real-world incidents to help security teams improve defences.
Realistic server room red warning lights lock icon shadowy intrusion

Oracle issues urgent patch as Cl0p exploits suite flaw for attacks

Wed, 8th Oct 2025
#
ransomware
#
mfa
#
advanced persistent threat protection
Oracle has issued an urgent patch for a critical flaw in its E-Business Suite, exploited by the Cl0p ransomware group using advanced social engineering tactics.
Realistic server room security breach highlight cybersecurity patching cloud

Broadcom patches VMware zero-day exploited for nearly a year

Thu, 2nd Oct 2025
#
cloud security
#
advanced persistent threat protection
#
it automation
Broadcom patches a VMware zero-day flaw exploited for nearly a year, allowing attackers root access to virtual machines in certain configurations.
Realistic illustration shadowy hooded figure computer dark room multiple monitors code dollar bills online fraud

Vane Viper linked to over 1 trillion DNS queries & ad fraud scams

Wed, 17th Sep 2025
#
martech
#
advanced persistent threat protection
#
cybersecurity
Vane Viper, a threat actor posing as an adtech firm, generated over 1 trillion DNS queries last year linked to malware and ad fraud, warns Infoblox.
Secure data server room digital shield cybersecurity canada illustration

Bell Canada adds cybersecurity as core company service

Wed, 10th Sep 2025
#
advanced persistent threat protection
#
breach prevention
#
risk & compliance
Bell launched Bell Cyber, aiming to build a CAD $1 billion AI-powered solutions business amid rising cyber threats in Canada.
Cyberattack on healthcare it systems hooded figure computer dark hospital

Oyster Backdoor mimics IT management tools to target IT professionals

Wed, 27th Aug 2025
#
malware
#
firewalls
#
ransomware
Oyster Backdoor malware, disguised as WinSCP and PuTTY, targets healthcare IT professionals to enable ransomware operations like Rhysida, warns BlueVoyant.
Realistic hospital building digital padlocks hackers iot medical devices warning

Global ransomware attacks rise as healthcare faces surge in cyber threats

Fri, 22nd Aug 2025
#
firewalls
#
ransomware
#
encryption
Ransomware attacks surge to 20 daily incidents in 2025H1, with healthcare facing increased cyber threats and hackers targeting overlooked IoT devices worldwide.
Digital illustration hacker computer bypassing microsoft app security shield

Phishing campaign uses fake Microsoft apps to bypass MFA

Tue, 19th Aug 2025
#
hyperscale
#
mfa
#
cloud security
Proofpoint exposes phishing attacks using fake Microsoft apps to bypass MFA and hijack Microsoft 365 accounts, affecting thousands globally in 2025.
Secure server with shields digital locks and alerts protecting online threats

LevelBlue & Akamai launch managed service for web app security

Fri, 15th Aug 2025
#
firewalls
#
devops
#
application security
LevelBlue and Akamai have teamed up to offer a managed web app and API security service, tackling rising threats with AI-driven, 24/7 protection and expert support.
Illustration interconnected computer servers red warnings vulnerability digital supply chain network

Black Kite unveils ASI for targeted third-party cyber risk

Sat, 9th Aug 2025
#
ransomware
#
advanced persistent threat protection
#
supply chain
Black Kite has launched its Adversary Susceptibility Index to help firms spot which suppliers are most exposed to specific cyber threat actors, enhancing risk management.
Illustration computer screen padlocks shields digital browser windows cybersecurity

SquareX launches open-source toolkits to defend browsers

Fri, 8th Aug 2025
#
firewalls
#
network security
#
advanced persistent threat protection
SquareX launches two open-source toolkits to help security teams simulate and defend against browser-based attacks that evade traditional enterprise defences.
Digital globe network with connected nodes shadowy hackers and warnings

AI-driven DNS threats & malicious adtech surge worldwide

Tue, 5th Aug 2025
#
malware
#
phishing
#
advanced persistent threat protection
Infoblox's 2025 report reveals a surge in AI-driven DNS threats and widespread malicious adtech affecting global organisations, urging proactive cyber defence.
Security researcher analyzing complex network map with user icons clouds modern office

BeyondTrust launches Phantom Labs to boost identity security research

Tue, 5th Aug 2025
#
data science
#
iam
#
cybersecurity
BeyondTrust launches Phantom Labs, a specialised team to research identity security threats and enhance protection against identity exploitation in hybrid and cloud environments.
Realistic computer screen warning symbol digital spiderwebs shadowy figures cyber threats dark office

AI-driven DNS threats & malicious adtech fuel cybercrime surge

Tue, 5th Aug 2025
#
phishing
#
email security
#
ai
Infoblox reports a surge in AI-driven DNS threats and malicious adtech, with 25% of new domains found malicious, urging firms to adopt proactive cyber defences.
Hooded figure at computer surrounded by digital code abstract clouds and ai elements cyberattack theme

CrowdStrike report warns of GenAI driving surge in cyberattacks

Tue, 5th Aug 2025
#
malware
#
ransomware
#
mfa
CrowdStrike warns that generative AI is fuelling a surge in cyberattacks, targeting cloud systems, AI agents, and escalating sophisticated social engineering globally.
Hooded figure computer dark room digital locks chains cyber threats ransomware

Global ransomware attacks drop 43% but threats evolve quickly

Sat, 26th Jul 2025
#
ransomware
#
advanced persistent threat protection
#
cybersecurity
Global ransomware attacks fell 43% in Q2 to 371 cases in June, but evolving tactics signal persistent threats amid rising cyber warfare and political motives.
Complex network interconnected devices with vulnerability warnings modern graphic

Digital attack surfaces expand as key exposures & risks double

Fri, 25th Jul 2025
#
malware
#
data protection
#
ransomware
Organisations face doubled key cyber exposure risks as digital attack surfaces widen, with exposed ports and credentials surging in early 2025, says ReliaQuest.