Cyberthreat News
Cyberthreat News is our weekly news briefing that provides the latest in critical cybersecurity information and threat intelligence. It covers the latest cyber threat activity, including exploited vulnerabilities and attacks, along with mitigations, workarounds, and detections.
Whether caused by ransomware, supply-chain hacks, or data breaches, the cost of cyber threat activity is growing for Canadian organizations. Those costs include lost revenue and productivity, the price of remediation and recovery, and long-term damage to brand reputation and trust. They also drain finite organizational resources and diminish competitiveness.
In 2023 and 2025, breach incidents impacted millions of people worldwide, with attackers stealing sensitive information for financial gain or to create disruption. Many of these incidents began with compromised vendors or shared platforms. Attacks against UNFI, the U.S. Treasury, Snowflake customers, and the UK Ministry of Defence all highlight third-party security risks that can wreak havoc.
Increasingly, threat actors use stolen credentials to rapidly gain access to systems without raising alarms. Campaigns targeting M&S, Ukrainian government users, and retailers demonstrate the need for multi-factor authentication (MFA), identity monitoring, and strong password hygiene.
Sophisticated threat actors and nation-states are exploiting flaws in enterprise software to steal sensitive information, evade detection, and disrupt critical business functions. Recent incidents affecting food supply chains, healthcare services, airports, and other government facilities highlight the growing danger to public safety and economic stability. These attacks are driving up the cost of defending against them, and threatening global competitiveness.