Ransomware payments at 28% of attacks in 2026, per Chainalysis. Record low, attack volume still rising. Operators moved to exfiltration extortion. No encryption, no decryption key, no clear recovery path.

This week: NK actors used AI-generated fake developer job interviews to deliver in-memory malware with no disk artefacts. And Google/Mandiant closed a decade-long Chinese APT campaign that used Google Sheets as C2. Legitimate SaaS, trusted by default, for ten years.

Marquis v. SonicWall heads to trial. Seventy-four US banks, one breach pathway, one vendor in the dock. Vendor liability is becoming case law.

#infosec #CISO #ThreatIntel