Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Domain Monitor Now Catches the Impersonation Attempts Keyword Matching Was Built to Miss

Domain Monitor's detection engine has been rebuilt to catch impersonation domains that keyword matching was never built to find. This release covers the new evidence-based matching engine, per-keyword Low, Medium and High thresholds, and what's coming next as the improvements roll out in stages. Domain Monitor's detection engine has been rebuilt from the ground up.

Threat Actors to Watch: Akira and Storm-1175

From a ransomware-as-a-service group that can move from initial access to full encryption in under four hours, to a China-linked affiliate that has quietly pivoted to its own encryptor, these two threat actors show how mature the ransomware ecosystem has become. CYJAX breaks down what each group does, why they matter, and what security teams should know.

Cyber Threat Intelligence for Fintech: A Sector Built for Speed, Targeted for the Same Reason

UK fintech is one of the country's fastest-growing sectors, but its reliance on APIs, partnerships, and real-time data makes it a prime target for cybercriminals. This blog explores why fintechs are so exposed, what the latest UK data reveals about breach costs and supply chain risk, and how cyber threat intelligence helps firms grow securely.

A Guide to Cybersecurity Laws and Regulations in the UK

The UK's compliance environment is shifting fast as organisations move to the cloud and accelerate digital transformation. This guide breaks down the core cybersecurity laws and regulations UK organisations need to know, from data protection statutes to sector-specific frameworks, and what recent government data reveals about the threat landscape driving them.

WhatsApp Usernames: Privacy Feature Brings New Impersonation Risks

WhatsApp has begun rolling out usernames, letting people connect without sharing their phone number. The feature adds privacy for individual users but opens fresh territory for impersonation, lookalike accounts, and smishing, particularly as usernames are reserved on a country-by-country basis.

Cyber Threat Intelligence for the Insurance Sector: A Sector Under Two Kinds of Pressure

The insurance sector faces mounting pressure from both commercial growth and a persistent, evolving cyber threat landscape. This blog examines why insurers remain key targets, where their security gaps lie, and how cyber threat intelligence helps close the gap between ambition and resilience.

The UK Has a Foreign Vendor Problem. The Case Studies Are Piling Up.

The NHS, MoD, and Metropolitan Police have each built deep operational dependency on Palantir through contracts largely awarded without competitive tender. Parliament has called it "an unacceptable point of weakness," Sadiq Khan blocked a £50 million Met Police deal, and the pattern keeps repeating: enter below scrutiny thresholds, build dependency, make exit expensive.

UK vs Europe: comparing the physical threat landscape facing the rail sector

Rail networks sit at the intersection of critical national infrastructure and daily public life, making them a persistent target for protest, industrial action, infrastructure crime and, in parts of Europe, suspected sabotage tied to geopolitical tensions. This analysis from CYJAX sets out the physical threat picture in the UK alongside that of the wider continent.