Risk & governance
-
Ransomware claims rise as confirmations lag
Comparitech recorded 799 ransomware incidents and criminal claims in July, but only 51 had been confirmed by affected organisations when its analysis was published.
-
Supplier account opens route into Żabka systems
Attackers used an external provider’s account to access Żabka resources supporting its franchise network, although payments, shops, consumer services, and Żappka data remained unaffected.
-
Logistics breach stalls De Bijenkorf orders
Unauthorised access at a De Bijenkorf logistics provider has delayed orders, returns, and refunds, with customer contact and purchase information potentially exposed.
-
AvePoint links data classification to recovery
AvePoint is linking continuously updated sensitivity classification with sequenced recovery, although its new Kinetic Classification capability remains in private preview.
-
AI features in 55% of African cybercrime
INTERPOL says AI featured in 55% of reported cybercrime cases across Africa, while fragmented laws and weak cross-border data sharing continue to impede investigations.
-
UK relaunches £350,000 security innovation call
UK Defence Innovation has opened a security competition offering projects up to £350,000 to develop prototypes addressing cyber resilience, protective security, and Home Office priorities.
-
CrowdStrike sees exploitation within 48 hours
CrowdStrike says 88% of the exploitation it observed involving vulnerabilities with public proof-of-concept code occurred within two days of release.
-
Visa agrees $2.4bn BioCatch acquisition
Visa’s proposed $2.4 billion purchase of BioCatch would bring behavioural and device intelligence used by more than 350 banks into the payment group’s security portfolio.
-
N-central attackers reached managed endpoints
Attackers exploited N-able’s N-central platform, obtained administrative access, and used its remote-control capability to connect to endpoints inside customer-managed environments.
-
ICO monitors AI agents reaching external systems
Britain’s data regulator is monitoring incidents in which OpenAI and Anthropic systems reached external organisations during cyber evaluations.







