In 2025, advanced fraud attacks increased by 180%, driven by cyber-scammers leveraging generative AI to create highly convincing fake identities, deepfakes, and autonomous bots. This surge in sophistication poses significant risks to digital security and highlights the urgent need for enhanced protective measures against such advanced threats.
Latest Cybersecurity Threats
Real-time threat intelligence from trusted sources
The OnSolve CodeRED emergency notification system has been disrupted by a cyber-attack attributed to the INC Ransom group, leading to compromised emergency notifications and exposure of user data across the United States. This incident raises significant concerns about the security of critical communication systems and the potential risks to public safety.
Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
New research highlights a significant security vulnerability in Microsoft Teams B2B Guest Access, allowing attackers to circumvent Defender for Office 365 protections with just a single invitation. This flaw poses a serious risk of malware attacks on users, emphasizing the need for immediate attention to security protocols within the platform.
The article discusses how AI, particularly in the form of 'Dark LLMs', is assisting low-level cybercriminals in performing competent tasks, although it is not meeting the high expectations set for its capabilities. This indicates a shift in how petty criminals are leveraging technology, but it also suggests that the overall technical effectiveness of AI in cybercrime is still lacking.
The article highlights the unintended consequences of integrating agentic AI into browsers, specifically the significant increase in prompt injections. This issue raises concerns about security vulnerabilities and the potential for misuse in AI-driven environments.
Cyberattackers are leveraging large language models (LLMs) to enhance their malware capabilities, enabling them to run prompts in real-time to avoid detection. This integration poses a significant threat as it allows for dynamic code augmentation, making traditional detection methods less effective.
The article highlights that over half of surveyed organizations lack confidence in their ability to secure non-human identities (NHIs), indicating a significant gap between the adoption of these identities and the necessary protective measures. This situation poses a serious risk to cybersecurity as NHIs become more prevalent in enterprise environments.
Security Affairs
Multiple London councils, including Kensington & Chelsea and Westminster, have experienced a cyberattack that may have compromised residents' personal data. Authorities are investigating the incident and have reported it to the UK Information Commissioner’s Office, indicating the potential severity of the breach.
BleepingComputer
Microsoft has alerted users that FIDO2 security keys may require a PIN for sign-in following recent Windows updates since September 2025. This change could affect user experience and security practices, particularly for those relying on these security keys for authentication.
The Hacker News
A sophisticated supply chain attack has targeted South Korea's financial sector, resulting in the deployment of Qilin ransomware. This incident highlights the potential collaboration between a major Ransomware-as-a-Service group and North Korean state-affiliated actors, leading to significant data breaches across multiple victims.
The FBI has reported significant financial losses exceeding $262 million due to account takeover fraud since January 2025. Cybercriminals are impersonating financial institutions to steal sensitive data and funds, highlighting the increasing threat of such schemes to consumers and businesses alike.
Clover Security has raised $36 million to enhance software security by integrating AI agents into popular tools, aiming to identify and rectify design flaws early in the development process. This proactive approach addresses critical vulnerabilities that could be exploited if left unaddressed, highlighting the growing importance of secure software design in cybersecurity.
Microsoft is set to enhance the security of its Entra ID authentication system to protect against external script injection attacks starting in mid-to-late October 2026. This improvement aims to mitigate potential vulnerabilities that could be exploited by attackers to compromise user sign-ins.
Account takeover fraud has resulted in significant financial losses of $262 million in 2025, as reported by the FBI. This type of cybercrime involves impersonation of financial institutions to target various individuals and organizations, highlighting the urgent need for enhanced security measures.
Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
The founders of Samourai Wallet, Keonne Rodriguez and William Hill, have been sentenced to prison for their involvement in laundering $237 million through a cryptocurrency mixer. This case highlights significant legal repercussions for individuals involved in cryptocurrency-related illicit activities, emphasizing the ongoing scrutiny and regulation of the crypto space.