Trending Topics

What is ransomware? 2026 Update
Ransomware attacks are big business but affect businesses of all sizes. Here, we explain how it works and how to best defend against it.
Trending Topics
Trending
Protect is one of TechFinitive.com’s five key pillars. Here, we provide in-depth analysis of emerging threats to businesses along with a wealth of articles that will never go out of date – because the sad truth is that attackers will always be after our data.
We have a particular focus on ransomware, from simple guides to the key terms to the real-world after effects of a phishing attack. But we also want to provide practical advice on how to protect your business, whether that’s putting defensive measures in place or reminding people of the basics of cyber hygiene.
One of our key advantages is the depth and breadth of our writers’ experience. Davey Winder is one of the UK’s most respected cybersecurity journalists, having won numerous awards (it helps that he was once a hacker himself) and been covering cybersecurity ever since it became a “thing” in the 1990s.
We also draw on the knowledge that KG Orphinades earns in their day job, advising local small businesses on how to stay secure (KG also runs a website dedicated to VPNs). Last, and most definitely not least, Simon Edwards is CEO and founder of SE Labs, one of the world’s leading security testing labs, and a board member of the Anti-Malware Testing Standards Organization (AMTSO).
If you have a story that you would like to share – and we are happy to keep company names anonymous – then email us at [email protected], follow us on Twitter or join our community on LinkedIn.

Ransomware attacks are big business but affect businesses of all sizes. Here, we explain how it works and how to best defend against it.

Why M365 containment fails: Attackers are using the Mimecast Portal to persist in BEC campaigns after a password reset, continuing fraud and mining archives

Jay Kaplan, CEO of Synack, explains why annual pentesting is failing, how AI is reshaping cyber risk, and why continuous, coverage-driven testing is critical to securing modern attack surfaces.

One of the most used web hosting control panels, cPanel, has confirmed a critical zero-day vulnerability that can enable an unauthenticated, remote attacker to gain admin access

Splunk's agentic AI and MCP server open observability data to LLMs, raising critical security and governance questions. Explore the risks and the urgent need for agentic governance.

AI-generated code can accumulate vulnerabilities over time. This article explores the risks of iterative AI development and how to embed security into workflows.

(Sponsored) The 2026 rankings of the strongest cloud security contenders for large enterprises. Compare Check Point, Palo Alto, Wiz, and others based on multi-cloud consistency and prevention

Tenable Research has disclosed a critical vulnerability that could affect laptops, PCs, printers, scanners and industrial tools

CrowdStrike has been named a Customers’ Choice in the 2026 Gartner Peer Insights Voice of the Customer for Security Information and Event Management (SIEM) report.

Voice phishing has risen to a new level says a report by security researchers, and it's all aimed at compromising Single Sign-On

Splunk has patched a high-severity remote code execution (RCE) vulnerability that should sit near the top of every security team’s maintenance queue.

Cybersecurity firm Tanium has appointed Carol MacKinlay as its chief people officer, as the company secures a place in a top 50 cybersecurity technology provider list by Everest Group.

Attack on small business routers has resulted in the compromise of more than 18,000 business networks, including companies in the UK & Europe

95% of IT decision makers don't trust their security vendors, according to new research from security vendor Sophos.

New research from FortiGuard Labs has confirmed how North Korean hackers are using legitimate public infrastructure as command and control for campaigns targeting Windows users.

OpenClaw DDoS may sound like a new threat, but it exposes old weaknesses. This article explores why fundamentals, not complexity, determine resilience.

The US Federal Communications Commission has banned the sale of all new consumer routers made in foreign countries, which isn't as clever a move as it may sound

Discover why most organizations are unprepared for AI-driven identity threats, as IDC data reveals a widening gap between perceived security and true “verified trust”- and what leading firms are doing to close it.

Zimperium has uncovered 34 active malware families targeting 1,243 financial apps across 90 countries - Davey Winder explains what you need to know about its 2026 Mobile Banking Heist report

To defend against agentic AI attacks, you need to understand their methods - and that's exactly what the latest reports reveal