Threat reports
Deep-dive reports from Vectra Labs on the threat landscape facing Australian and APAC organisations. Every report tracks a specific vertical, vector or campaign - and ties findings back to defensive controls.
-
Ransomware
APAC ransomware Q4 2025
Double-extortion trends across APAC, with a focus on how actors are now pivoting via managed service providers into regulated customer environments.
18 min read Read -
Financial services
Identity-centric attacks against Australian banks
A year's worth of SOC telemetry on MFA-fatigue, adversary-in-the-middle and OAuth consent phishing campaigns against tier-one and mid-market banks.
22 min read Read -
Critical infrastructure
OT threat landscape for Australian energy
Patterns from passive OT monitoring across 22 energy-sector entities, mapped to AESCSF and IEC 62443 controls.
25 min read Read -
Healthcare
Healthcare ransomware playbook, 2025 edition
How ransomware has shifted its behaviour against PAS, EMR and pathology environments since 2022 - and the controls that still keep the lights on.
16 min read Read -
Retail
Magecart and the third-party JavaScript problem
A deep look at PCI DSS 4.0 Requirement 6.4.3 and 11.6.1 in practice - what tooling actually catches Magecart today, and what doesn't.
14 min read Read
Security, engineered around you.
Talk to an engineer - not a call centre. Most Vectra conversations start with a 30-minute technical briefing and end with a written plan.