AML/CTF Tranche 2: The Access Control Gap Australian Accounting Firms Need to Close Before 1 July 2026

From 1 July 2026, accounting firms in scope for AML/CTF Tranche 2 need more than a compliance program — they need demonstrable access controls. Here's what good looks like, and what AUSTRAC will be looking for. Read more

Cyber Security for Accounting Firms in 2026: How AI Has Changed the Threat — and What Leading Firms Are Doing About It

The Threat Landscape Has Shifted. Here’s What That Means for Your Accounting Firm in 2026. Something shifted in 2025. The phishing email, the fake invoice, the urgent payment request, they don’t look suspicious anymore. AI wrote them. And they were written about your firm, your clients, and your billing cycle specifically. For accounting professionals who […] Read more

5 Ways Cyber Security Changed Forever in 2025

As we near the end of the year, we’re looking back at the major cyber security shake-ups that happened in 2025. As part of our mission to protect Australian accounting professionals, we’ve been adapting and evolving to shut down these new threats as they’ve emerged. We’re proud to defend 28,000+ accounting professionals within our protection borders with Cloud Best Practice 2025.4.  When it comes down to it, the protection perimeter is broadening. […] Read more

From App Shopping to System Architecture: How Australian Firms Are Redesigning Their Tech Stacks

17.9 million user logins. 22,769 Australian accounting professionals. One unmistakable pattern.  If you’ve been in accounting for more than a few years, you’ve felt it: the gradual accumulation of small technology decisions that, over time, completely reshape how your practice operates. The app your team opens first each morning. The workflow someone quietly optimizes. The […] Read more

Remote Work Is Blurring the Line Between Productivity and Risk in 2025 — Here’s How Accounting Professionals Can Respond

The hybrid and remote work era has shifted far beyond mere location changes. For accounting professionals, the boundary between personal and professional technology use is increasingly porous. Devices are now shared spaces, creating multi-modal user access, where a laptop or mobile is used for client tax returns and bank portal access during business hours and […] Read more

The Devil is Still in the Email: What BEC Looks Like in 2025

Phishing used to be scams hiding behind fake login pages or emails with typos and bad grammar. Now, Business Email Compromise (BEC) has taken its place with a vicious, targeted, multi-channel attack that blends credential theft and AI-crafted social engineering. Today’s BEC attacks aren’t bulk spam. It’s tailored and contextually precise fraud: a stolen login, […] Read more