Weekly Threat Briefing: Zero-Days Hit Apple & SolarWinds, NSW Health Under Pressure

Weekly Threat Briefing: Zero-Days Hit Apple & SolarWinds, NSW Health Under Pressure

This week in Australian cyber security, the threat landscape is dominated by critical zero-day exploitations affecting widely used infrastructure. Federal agencies and private sector organisations are on high alert following CISA’s inclusion of new vulnerabilities in the Known Exploited Vulnerabilities (KEV) catalogue. Locally, the healthcare sector remains under intense scrutiny following the release of a concerning audit of NSW Health’s cyber posture, while SaaS and AI-driven threats continue to evolve.

Daily Threat Briefing: Critical SaaS RCEs & Healthcare Under Siege

Daily Threat Briefing: Critical SaaS RCEs & Healthcare Under Siege

In the last 24 hours, the Australian cybersecurity landscape has been dominated by urgent warnings regarding remote access tools and a fresh wave of attacks targeting the healthcare sector. Of particular concern is the active exploitation of a critical vulnerability in BeyondTrust Remote Support, a tool widely used by Australian enterprises and managed service providers (MSPs). Additionally, new reports from the Australian Signals Directorate (ASD) and global bodies highlight the weaponisation of AI agents, reshaping the threat horizon for 2026.

Daily Threat Briefing: Australia – 13 February 2026

Daily Threat Briefing: Australia – 13 February 2026

The last 24 hours in the Australian cyber threat landscape have been dominated by the escalating weaponisation of Generative AI, significant regulatory enforcement in the financial sector, and critical vulnerabilities in widely used SaaS automation tools. Nation-state actors, particularly the group identified as Salt Typhoon, continue to persistently target critical infrastructure, while the healthcare and education sectors face a fresh wave of data extortion campaigns.

Daily Threat Briefing: Australia – 12 February 2026

Daily Threat Briefing: Australia – 12 February 2026

The Australian cyber threat landscape for the last 24 hours has been dominated by a concerning breach of the national Early Warning Network (EWN) and a historic regulatory penalty in the FinTech sector. These events signal a shift from pure data theft to systemic disruption and regulatory accountability. Simultaneously, technical teams must urgently address critical vulnerabilities in AI agents and workflow automation tools that are being actively exploited in the wild.

Daily Threat Briefing: National Alert System Compromised, Landmark FinTech Penalty & New AI Workflow RCE

Daily Threat Briefing: National Alert System Compromised, Landmark FinTech Penalty & New AI Workflow RCE

In the last 24 hours, the Australian cyber security landscape has been dominated by a concerning breach of the national Early Warning Network and a historic regulatory penalty in the FinTech sector. Simultaneously, technical teams must urgently address critical vulnerabilities in workflow automation tools that power many modern SaaS and AI integrations.

Australia Daily Cyber Threat Briefing: FIIG’s $2.5m Penalty, School Data Fallout & The Rise of 'Shadow AI'

Australia Daily Cyber Threat Briefing: FIIG’s $2.5m Penalty, School Data Fallout & The Rise of 'Shadow AI'

The Australian cyber threat landscape for the last 24 hours has been dominated by a landmark regulatory ruling in the FinTech sector and escalating extortion campaigns targeting education and healthcare. The Federal Court’s decision to impose a $2.5 million penalty on FIIG Securities sets a new precedent for governance failures, signalling that "tick-box compliance" is no longer a viable defence.

Daily Threat Briefing: SmarterMail Zero-Day, Substack Breach & Healthcare Resilience

Daily Threat Briefing: SmarterMail Zero-Day, Substack Breach & Healthcare Resilience

As we commence the week, the Australian cybersecurity landscape is dominated by active exploitation of a new vulnerability in the popular SmarterMail platform and a high-profile data disclosure involving Substack. Additionally, the healthcare sector sees a reprieve with the conclusion of the Epworth HealthCare investigation, though the threat level remains critical. This briefing covers the latest intelligence from the last 24-48 hours, essential for decision-makers in Healthcare, SaaS, and Government sectors.

Weekly Threat Briefing: Australia's Cyber Landscape (2–8 February 2026)

Weekly Threat Briefing: Australia's Cyber Landscape (2–8 February 2026)

The first week of February 2026 has seen a distinct escalation in targeted campaigns against Australian critical infrastructure and services. This week’s intelligence highlights a sophisticated pivot by threat actors towards human-led attacks on identity systems (SSO) and a resurgence of high-impact ransomware claims in the healthcare sector. Furthermore, critical vulnerabilities in widely used SaaS and collaboration tools demand immediate attention from security teams across the region.

Daily Threat Briefing: DeepSeek Ban, Healthcare Ransomware, and Edge Exploits

Daily Threat Briefing: DeepSeek Ban, Healthcare Ransomware, and Edge Exploits

The last 24 hours in the Australian cyber security landscape have been dominated by significant government action against AI platforms and a confusing ransomware situation in the healthcare sector. On 6 February 2026, the Australian Government officially banned DeepSeek from government devices, citing national security concerns and severe vulnerabilities in the model’s safety guardrails. Simultaneously, the healthcare sector is on high alert as conflicting reports emerge regarding a massive data theft at a major Victorian provider.

Daily Threat Briefing: Australia - 06 February 2026

Daily Threat Briefing: Australia - 06 February 2026

In the last 24 hours, the Australian cyber threat landscape has been dominated by significant escalations in the Education and Healthcare sectors, alongside critical supply chain compromises affecting widely used software. Of particular concern is the shift in threat actor tactics towards "disruption over data theft," as highlighted by intelligence warnings regarding state-sponsored "cyberthugs." Today’s briefing analyses these developments to help your organisation stay resilient.