News

Cybersecurity Dive
cybersecuritydive. com > news > email-phishing-trends-microsoft-qr-codes > 819077

As email phishing evolves, malicious attachments decline and QR codes surge

49+ min ago  (313+ words) A new Microsoft report also describes the collapse of a once-dominant tool for generating phishing websites with fake CAPTCHAs. The growth in QR-code phishing attacks is one of the most striking findings in Microsoft Threat Intelligence's Q1 2026 report, which analyzes the…...

Cybersecurity Dive
cybersecuritydive. com > news > ai-agents-security-guidance-australia-us > 819076

US and allies urge "careful adoption" of AI agents

1+ hour, 9+ min ago  (360+ words) New guidance from a coalition of Western governments underscores the difficult-to-predict risks of still-evolving agentic tools. The Australian and U. S. governments, along with other international partners, released guidance on Friday for safely deploying agentic AI systems. Safely using AI agents means…...

Cybersecurity Dive
cybersecuritydive. com > news > zero-trust-operational-technology-us-guidance > 818950

US agencies promote zero-trust practices for operational technology networks

21+ hour, 57+ min ago  (386+ words) Many zero-trust defenses work differently in industrial environments than in traditional business networks, five federal agencies said in newly published guidance. A group of U. S. government agencies on Wednesday offered advice for critical infrastructure organizations on applying zero-trust (ZT) principles to…...

Cybersecurity Dive
cybersecuritydive. com > news > state-cisos-losing-confidence-ability-manage-cyber-risks > 818670

State CISOs losing confidence in ability to manage cyber risks

2+ day, 3+ hour ago  (292+ words) Deloitte-NASCIO study shows AI, budget pressures are forcing states to make tough decisions. The growing concerns about cyber risk come at a time of increased threats from state-sponsored hackers, rising use of AI and increased pressure on budgets." State and…...

Cybersecurity Dive
cybersecuritydive. com > news > cisa-microsoft-connectwise-kev-update > 818817

CISA adds Microsoft, Connect Wise vulnerabilities to active exploitation catalog

2+ day, 40+ min ago  (237+ words) Russia has used one of the flaws, security experts said, while North Korea has used the other. The Cybersecurity and Infrastructure Security Agency added two major software flaws to its Known Exploited Vulnerabilities (KEV) catalog on Tuesday, acknowledging the evidence…...

Cybersecurity Dive
cybersecuritydive. com > news > manufacturing-cybersecurity-threats-resilience > 818680

Fundamental tension" undermines manufacturers" cybersecurity

3+ day, 1+ hour ago  (230+ words) A simple security mistake caused roughly one-quarter of all financial losses in the sector in 2025, cybersecurity insurer Resilience said. Ransomware attacks increased by roughly 46% overall between January and September 2025 compared to the same period in 2024, but they increased by 61% in…...

Cybersecurity Dive
cybersecuritydive. com > news > us-uk-authorities-firestarter-backdoor-malware-patching > 818531

US, UK authorities warn that Firestarter backdoor malware survives patching

4+ day, 2+ hour ago  (283+ words) A federal agency was impacted by a hacking campaign that exploited flaws in Cisco devices. U. S. and U. K. authorities have issued warnings about backdoor malware used against vulnerable Cisco devices that can maintain persistence despite being patched." The backdoor malware, dubbed Firestarter,…...

Cybersecurity Dive
cybersecuritydive. com > news > critical-infrastructure-cyberattack-itron-smart-meters > 818547

Major critical infrastructure supplier reports cyberattack

4+ day, 58+ min ago  (218+ words) Itron, which makes devices that measure energy usage and control other infrastructure, said its operations were continuing, despite the intrusion. Hackers broke into the computer networks of major critical infrastructure equipment vendor Itron, the company said in a statement late…...

Cybersecurity Dive
cybersecuritydive. com > news > hasbro-march-cyberattack-impact-second-quarter-revenue > 818438

Hasbro expects March cyberattack to impact second-quarter revenue

1+ week, 46+ min ago  (386+ words) The toy maker is reviewing files and working to fully bring certain systems back online. The company will incur some costs related to the investigation. Hasbro, in a financial update released Thursday, said it expects to report some impact to…...

Cybersecurity Dive
cybersecuritydive. com > news > iran-nexus-threat-groups-refine-attacks-against-critical-infrastructure > 818299

Iran-nexus threat groups refine attacks against critical infrastructure

1+ week, 1+ day ago  (1420+ words) State-sponsored and hacktivist groups have shown greater determination to damage or disable energy, water and other key sectors. Iran, long considered a steady and persistent cyber threat to the U. S. , has raised its game in the months since the two nations…...