Ransomware gangs rebrand every few months. The behavior they monetize hasn't since 1989.
Cybersecurity Insights Decoded

Decoded – Ransomware in Italy is an accounting decision, and the attackers know your books

RedACT counted 148 confirmed ransomware claims against Italian organizations in six months. Almost none of them required sophistication to pull off. What they required was a set of human behaviors so consistent (before the breach and especially after it) that thirty different gangs can price them into a business model.

Skepticism runs on two things:
Cybersecurity Insights Field Notes

๐Ÿ”— Field Notes – Comfort is the attack surface on both sides of the firewall

The 2026 SANS survey lands on a reassuring finding: a trained, skeptical human is still the best defense against AI-enabled attacks. Sit with the rest of the numbers and a harder pattern shows up. Skepticism runs on time and discomfort, and an AI-shaped attack is built to remove both, on both sides of the firewall.

The consent your employees never gave was set for them
Cybersecurity Insights Field Notes

Field Notes โ€” The consent your employees never gave was set for them

Excerpt: For two days in July, any Instagram user could pull another person’s public posts into an AI-generated image by @-mentioning them, with the setting enabled for everyone by default. Meta withdrew the option after backlash. The interface disappeared. The assumption underneath it, that a person’s public content is reputation exposure rather than attack material, did not.

The cost of phishing keeps rising, so companies decided to spend less
Cybersecurity Insights Decoded

๐Ÿ’ข Decoded – The cost of phishing keeps rising, so companies decided to spend less (WTF)

Phishing is the single most common way into a breached company right now, and it has never been cheaper to run against you. So how did breached organizations respond? By cutting their planned security spend. Same cost-cutting instinct on both sides of the table, opposite blast radius, and only one side collects.

Why did Italy's Emma-5 AI fail and what does it teach security teams about trusting AI models?
Cybersecurity Insights PacketHunters

๐ŸŽฃ #PacketHunters – 60k chats, 24 hours, DPO disabled: Emma-5 and the death of AI model trust ๐Ÿ’ฅ

60.000 chats. 24 hours. DPO disabled. Italy laughed at a chatbot that recommends Pepsi for organic food. The part nobody is laughing about is what ‘alignment disabled’ means when a small, cheap, on-prem model lands in the wrong hands. A technical breakdown of provenance, scope, and how to smell-test the fuffa.

Scroll to Top