惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

H
Help Net Security
T
ThreatConnect
SecWiki News
SecWiki News
F
Future of Privacy Forum
AWS News Blog
AWS News Blog
C
Cisco Blogs
A
Arctic Wolf
Vercel News
Vercel News
The GitHub Blog
The GitHub Blog
Scott Helme
Scott Helme
V
V2EX
博客园 - 叶小钗
阮一峰的网络日志
阮一峰的网络日志
K
Kaspersky official blog
G
Google Developers Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
P
Privacy International News Feed
C
Cyber Attacks, Cyber Crime and Cyber Security
N
News | PayPal Newsroom
Schneier on Security
Schneier on Security
NISL@THU
NISL@THU
Microsoft Azure Blog
Microsoft Azure Blog
量子位
The Hacker News
The Hacker News
Stack Overflow Blog
Stack Overflow Blog
Security Latest
Security Latest
M
Microsoft Research Blog - Microsoft Research
Google Online Security Blog
Google Online Security Blog
博客园_首页
C
CXSECURITY Database RSS Feed - CXSecurity.com
I
InfoQ
Google DeepMind News
Google DeepMind News
Y
Y Combinator Blog
The Cloudflare Blog
Microsoft Security Blog
Microsoft Security Blog
Martin Fowler
Martin Fowler
Cisco Talos Blog
Cisco Talos Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
T
Troy Hunt's Blog
F
Fox-IT International blog
S
Security @ Cisco Blogs
博客园 - 司徒正美
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
C
Comments on: Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
L
LINUX DO - 最新话题
GbyAI
GbyAI
Project Zero
Project Zero
腾讯CDC
T
Tailwind CSS Blog

Security

Alert! National Anti-Scam Centre and ASIC warns Aussies of fake crypto trading platforms Report: AI-driven exploitation beats phishing as most popular initial access strategy Exclusive: Victorian regional newspaper alleged hacked ransomware group Exclusive: Victorian regional newspaper allegedly hacked by ransomware group State Library of NSW responding to April cyber intrusion Over 50% of API banking attacks happen in Asia-Pacific, report finds Microsoft patches pair of Microsoft Defender zero-days following active exploitation EU wins global cybersecurity competition following digital partnership with Australia Report: Rapid7 warns AI-driven attacks are accelerating vulnerability exploitation Warning! Hackers spotted exploiting poorly patched SonicWall SSL VPN appliances 7-Eleven confirms cyber attack following ShinyHunters claims Busted! Vulnerability remediation is broken, a new report says Exclusive: US fintech firm OpenAI is using for linking bank accounts to ChatGPT discloses years-long cyber incident Thales and Google Cloud launch sovereign cloud operation in Germany Cyber fraud attacks up 17%, new findings reveal Australian Signals Directorate warns of device code phishing activity targeting Microsoft 365 users US banking regulators pause cyber exams for banks to allow Mythos patching Barracuda partners with CyberCert to simplify SMB1001 compliance for Australian SMEs Op-Ed: The reality of data-centric security and Attribute-based Access Control (ABAC) Exclusive: INC Ransom claims cyber attack on Australian engineering service company Op-Ed: To pay, or not to pay… That is the existential ransomware question Cyber Insurance for Small Business: When Getting Hacked Stops Everything Operation Ramz: INTERPOL arrests 201 in MENA region cybercrime operation Exclusive: Australian College of Business Intelligence investigating Qilin ransomware claims Exclusive: Major cleaning and facility services firm confirms third-party cyber incident Sentenced: 35-year-old Melbourne man jailed over phone porting scam Exclusive: Bluize confirms cyber incident, launches investigation US cyber agency warns of active exploitation of Microsoft Exchange Server spoofing vulnerability Three scammers charged following gold bullion purchase using scam profits Exclusive: Qilin ransomware group claims responsibility for Generation Life hack Exclusive: Hospitality IT provider allegedly breached by Qilin Exclusive: Tassie hospitality group confirms CMD Organization ransomware attack 80% of Aussies organisations face identity attacks, survey finds British Airways allegedly breached as hackers claim to have stolen pilot data Q&A with Adam Meyers: “It's going to be an absolute bloodbath.” Act now! Cisco patches ‘perfect 10’ Cisco Catalyst SD-WAN Controller vulnerability AI revolution? CVE disclosures jump by up to 500% for some vendors Report: Business email compromise attacks surged dangerously in April Kick-off! 2026 FIFA World Cup to be a prime target for scammers, cyber criminals Scope Systems confirms cyber incident, says no data loss occurred Instructure breach: ShinyHunters says ‘matter has been resolved’ Rapid7 launches Cyber GRC program to connect compliance with live risk data Australian Federal Budget 2026: The industry perspective Op-Ed: Microsoft May Patch Tuesday reveals 137 vulnerabilities Federal Budget 2026: The state of cyber security spending for the coming year OpenAI offers EU early access to its cyber security model Exclusive: Aussie firm Earth Systems listed by INC Ransom hacking group Op-Ed: Why Middle East tensions demand immediate action on OT security Aussie schools breach: Instructure boss “reaches agreement” with ShinyHunters to not release data Institute of Public Accountants members hit by data breach Union demands answers on Qantas AI plans 1 in 3 small businesses don't think they're a cyber target, new research finds Exclusive: Aussie toy distributor listed by M3rx ransomware Exclusive: Australian Computer Society investigating possible breach after ShinyHunters hack claims The industry speaks – part 2: World Password Day 2026 Aussie schools breach: The Instructure hack “transcends an isolated IT incident” Exclusive: Aussie car part importer Strategic Imports allegedly breached by threat actors New South Wales, other states, investigating Instructure/Canvas data breach Australian Cyber Security Centre warns of ClickFix campaign leveraging Australian infrastructure Queensland Department of Education confirms students & staff impacted by ShinyHunters data breach ACMA takes action against SpinTel & Yomojo over mobile number fraud violations The Industry Speaks, Part 1: World Password Day 2026 Qualys and Converge tie cyber insurance pricing to real-time security posture Fakeout: Iranian APT caught hiding behind Chaos ransomware activity Exclusive: Australian energy management firm allegedly breached by SafePay Real estate giant Cushman & Wakefield confirms cyber incident, Qilin and ShinyHunters claim attack CrowdStrike expands Project QuiltWorks as more partners join AI security coalition Hacked: ALS discloses cyber incident, unauthorised access to IT systems Microsoft the main target of AI phishing attacks, report uncovers Attackers increasingly turning to trusted security tools to compromise Aussie victims Exclusive: Champion Homes confirms customer data compromised in “cyber event” Australia, Japan commit to partnership to meet cyber security challenges & strengthen cyber defences NSW Treasury cyber incident contained, impact no longer ‘significant’ WA rental scam surge: Tenants targeted with fake $500 discount trap Aussie Information Commissioner launches Privacy Awareness Week 2026 Unregistered branded text messages to be labelled ‘Unverified’ from 1 July Exclusive: Major Australian jewellery brand confirms cyber incident Watch this! Komari server monitor tool abused by hackers Act Now! ACSC warns of active exploitation of cPanel & WHM critical vulnerability Exclusive: Kiwi electrical contractor confirms cyber attack Exclusive: Prime Properties listed as breach victim by M3rx ransomware DigiCert launches AI Trust architecture to secure agents, models, and content Winners of the 2026 Australian Cyber Awards unveiled Op-Ed: Redefining performance in the AI-powered SOC NZ council cyber attack leads to ID and financial data being exposed Alert! Wave of fake toll, parking scams impacting countries worldwide, including Australia and New Zealand Vect unveiled: Inside an emerging ransomware group’s affiliate network Exclusive: Gelatissimo confirms unauthorised access, investigates DragonForce hack claims Aussie ice-cream franchise Gelatissimo suffers alleged hack by DragonForce Anthropic Mythos: The model, the myth and the mundane​ Report: Aussie small businesses doing it tough as job scams double, losses rise Cyber attacks on medical devices pose ‘significant’ impact on real-life patient care Twisted Firestarter! Aussie, US, and UK cyber agencies warn of Cisco malware campaign Generation Life informs customers of “cyber incident” as owner shares incident with ASX CBA launches new scam-finding AI agent Sri Lankan government hack sees $3.7m destined for Australia stolen CrowdStrike extends cloud threat detection to Google Cloud Hey big spender! Microsoft to invest $25bn in Australian AI infrastructure Genetec marks Sydney milestone with visit by high commissioner of Canada to Australia Rental platform under fire for collecting excessive personal data
Bank on it: AI-driven cyber crime is reshaping financial sector threats
david.hollin · 2026-05-25 · via Security

North Korean-linked hackers stole more than US$2 billion in digital assets during 2025, while AI-powered cyber crime and identity-based attacks drove a sharp increase in fintech intrusions.

CrowdStrike has warned that artificial intelligence is accelerating cyber threats against the global financial sector, as nation-state hackers and cyber criminal groups increasingly turn to AI-powered deception, stolen identities, and cloud-based attack techniques to evade traditional defences.

The company said in its 2026 Financial Services Threat Landscape Report that hands-on-keyboard intrusions targeting financial institutions increased 43 per cent globally over the past two years, with attackers increasingly exploiting trusted identities and SaaS applications for initial access.

You’re out of free articles for this month

To continue reading the rest of this article, please log in.

The report, based on tracking of more than 280 named threat groups, found that North Korean-linked actors were responsible for a record wave of digital asset theft during 2025.

DPRK-linked adversaries drove a 51 per cent year-on-year increase in digital asset theft, stealing an estimated US$2.02 billion from the sector.

CrowdStrike said the Pressure Chollima group carried out the largest publicly reported financial theft on record, stealing US$1.46 billion in cryptocurrency through trojanised software distributed via supply chain compromise.

Another DPRK-linked group, Golden Chollima, reportedly used recruitment-themed social engineering lures to divert cryptocurrency funds and gain access to cloud environments at fintech organisations in south-east Asia and Canada.

The report also highlighted the growing use of AI by North Korean threat actors to scale their operations. Stardust Chollima tripled its operational tempo using synthetic recruiter personas and AI-generated video conferencing environments to target fintech organisations across North America, Europe, and Asia.

The report also identified Chinese state-linked espionage groups as a major threat to financial institutions globally.

CrowdStrike said Hollow Panda conducted intrusions against financial organisations in the Philippines, Indonesia, and Brazil, while Murky Panda deployed an operational relay box network spanning more than 150 endpoints across 36 countries, targeting hundreds of organisations.

According to the report, ransomware and similar activity continued to intensify, with 423 financial services organisations appearing on ransomware leak sites during 2025, representing a 27 per cent year-on-year increase.

CrowdStrike said a group it calls Mutant Spider drove high intrusion volumes through voice phishing campaigns before selling access to ransomware operators, while Scattered Spider resumed ransomware operations targeting insurance organisations after a four-month pause earlier in the year.

Adam Meyers, head of counter-adversary operations at CrowdStrike, said AI was lowering the barrier to entry for sophisticated cyber crime operations.

“Financial services organisations face threats from every direction, and AI is making each of them harder to stop,” Meyers said.

“The cost to create convincing identities, automate reconnaissance, and accelerate credential theft is near zero.

“Adversaries are using AI to compress the time from initial access to impact, moving through trusted paths faster than legacy defences can respond. To close that gap, defenders have to meet AI with AI – pairing intelligence with hunting to outpace the adversary.”

You can read the full report here.

Cyber DailyWant to see more stories from trusted news sources?
Make Cyber Daily a preferred news source on Google.

David Hollingworth

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.

Tags: