Incident Response stories - Page 3
Datadog unveils MCP Server for governed AI observability
5 days ago
#
devops
#
siem
#
digital transformation
Datadog launches an MCP Server to give AI agents governed, real-time access to observability data across live development and operations.
Google warns of surge in enterprise zero-day attacks
Last week
#
virtualisation
#
firewalls
#
vpns
Google warns attackers are shifting from browsers to corporate systems, as tracked zero-day exploits climb and enterprise edge devices surge.
Tycoon 2FA phishing service disrupted in major sting
Last week
#
ransomware
#
mfa
#
crypto
Police and tech firms have dismantled Tycoon 2FA, a phishing service used to bypass MFA and hijack cloud accounts at industrial scale.
Tufin unveils AI assistants & executive security hub
Last week
#
firewalls
#
hybrid cloud
#
data analytics
Tufin rolls out four AI assistants and a customisable executive hub to speed network security rule searches, access changes and risk insight.
ShinyHunters claims Woflow breach in supply chain hack
Last week
#
data protection
#
ransomware
#
mfa
ShinyHunters claims it hacked merchant data firm Woflow, raising supply chain fears for major brands despite no confirmed breach yet.
Droplet warns UK that identity-based cyber defences fail
Last week
#
malware
#
firewalls
#
network security
Droplet warns UK that identity-based cyber defences are failing against state-backed attackers, urging multi-layered, 'never trust' security.
A resilient security culture is built in the flow of work, not the classroom
Last week
#
data protection
#
digital transformation
#
phishing
Rising UK cyber attacks show training alone is failing; firms must embed behavioural security cues into daily work to cut human risk.
Forcepoint adds ARIA AI assistant to Data Security Cloud
Last week
#
data protection
#
endpoint protection
#
hybrid cloud
Forcepoint adds ARIA AI assistant and a faster endpoint agent to Data Security Cloud to tighten policy control for generative AI workloads.
Cato unveils Dynamic Prevention engine for SASE security
Last week
#
firewalls
#
digital transformation
#
hyperscale
Cato launches Dynamic Prevention, a SASE-native engine that auto-detects multi-stage attacks by correlating months of security telemetry.
Structural stress rises for sysadmins in hybrid IT era
Last week
#
devops
#
digital transformation
#
it automation
Hybrid IT sprawl is driving “structural stress” for sysadmins as security risks rise, responsibilities grow and control over tools shrinks.
Coruna exploit kit exposes risks for outdated iOS users
Last week
#
endpoint protection
#
pam
#
mfa
New Coruna exploit kit shows outdated iOS devices face automated, scalable attacks that can turn compromised phones into corporate gateways.
Ransomware attacks surge 50% as industrial firms hit hardest
Last week
#
malware
#
data protection
#
ransomware
Global ransomware attacks jump 50% to 7,874 in 2025, with industrial firms bearing the brunt as criminal groups reshuffle their tactics.
Why women can be leaders when it comes to AI
Last week
#
data protection
#
ransomware
#
digital transformation
Women in cybersecurity, long trained to question and validate, are uniquely placed to lead the era of risky, fast‑moving AI tools.
Archipelo, Checkmarx tie dev context to app security
Last week
#
devops
#
application security
#
devsecops
Archipelo and Checkmarx partner to fuse dev workflow signals with app security scans, giving teams origin evidence to prioritise fixes.
Agentic AI boosts elite cyber teams but hinders rookies
Last week
#
devops
#
apm
#
risk & compliance
Agentic AI massively accelerates elite cyber teams but can slow inexperienced hackers, Hack The Box's large-scale benchmark reveals.
MSPs warned as cyber criminals weaponise trusted access
Last week
#
firewalls
#
dr
#
ransomware
Cyber criminals are hijacking MSP trust relationships, abusing valid credentials and VPNs as AI turbocharges phishing and ransomware.
Keeper connects Jira workflows with privileged access
Last week
#
siem
#
digital transformation
#
pam
Keeper launches native Jira integrations to tie security incident workflows directly to privileged access approvals while retaining zero-knowledge controls.
LevelBlue & Tenable expand exposure tools for partners
Last week
#
devops
#
digital transformation
#
cloud security
LevelBlue debuts Exposure Management for Partners with Tenable, giving MSSPs and MSPs tiered, unified exposure and risk visibility tools.
Breaking in without a blueprint: Lessons learned from my nontraditional path to cybersecurity
Last week
#
ransomware
#
cybersecurity
#
threat intelligence
From door-to-door sales to tracking ransomware, one woman proves cybersecurity careers can thrive far from the traditional path.
Bridging the gap: Cybersecurity breakthroughs and imbalances
Last week
#
data protection
#
endpoint protection
#
mfa
Cybersecurity evolves to AI‑driven defences, but gender imbalances persist, pushing women to fight harder for visibility and leadership.