Cloudflare, Inc. has published the 2026 Cloudflare Threat Report. This spotlights a ‘fundamental rewiring’ of the modern cyber attack.
Threatscape
A library of horizon-scanning related research, reports, and articles.
A new Hiya report, State of the Call 2026, which surveyed 12,000 people across the US, UK, Canada, France, Germany, and Spain, shows that the threat of deepfake voice calls is becoming mainstream.
Black Duck has released the 2026 Open Source Security and Risk Analysis (OSSRA) report, which highlights the largest increases in open source security, licensing, and operational risk since the report’s inception 11 years ago.
Salt Security is warning that the new Moltbook platform, which recently hit the headlines in global media, and OpenClaw (formerly Clawdbot) agent framework offer a real-world preview of the next major enterprise security blind spot.
Sophos has released the 2026 Sophos Active Adversary Report. The findings highlight how attackers continue to exploit compromised credentials, weak or missing multifactor authentication, and poorly protected identity systems…
Simon Pamplin highlights that, while the timing of a ‘cryptographically relevant quantum machine’ remains uncertain, preparation cannot be deferred. Adopting crypto agility is a critical step in strengthening long-term resilience.
Attackers are increasingly bypassing MFA not by breaking technology, but by overwhelming users. Michael Downs looks at the issue and what organizations can do to reduce risk and strengthen resilience.
Gartner, Inc., has issued a prediction that, by 2028, misconfigured AI in cyber physical systems (CPS) will shut down national critical infrastructure in a G20 country.
Strategic discussions about AI often centre on workforce restructuring and automation. A more immediate enterprise risk is emerging: failure to design effective human-in-the-loop (HiTL) operating models.
Cloudflare has released its quarterly DDoS threat report for Q4 2025, highlighting the latest global attack trends and insights.









