Newsletter
Aug 18, 2024
10 min read
Brief #65: Critical Windows IPv6 Flaw, Malicious Browser Extensions, EDR-Killing Malware, and AI-Generated Election Influence
Week 33: Critical Windows IPv6 flaw likely to be exploited, widespread malware installs malicious browser extensions, new EDR-killing malware discovered, and OpenAI bans accounts using ChatGPT for election influence.
Newsletter
Aug 11, 2024
9 min read
Brief #64: Critical AWS Flaws, Office Zero-Day, AMD Chip Vulnerability, AI-Powered Email Security Raises $250M
Week 32: Critical AWS flaws enable data theft, Microsoft Office zero-day awaits patch, decades-old AMD chip flaw allows undetectable malware, and Abnormal Security raises $250M for AI-powered email security.
Newsletter
Aug 4, 2024
10 min read
Brief #63: Ferrari Deepfake Scam, Azure DDoS Attack, AI Security Challenges, Mentorship Value
Week 31: Ferrari exec targeted by AI deepfake, Microsoft Azure hit by DDoS attack, AI security challenges emerge, and cybersecurity leaders emphasize the value of mentorship.
Newsletter
Jul 28, 2024
10 min read
Brief #62: North Korea Operative Infiltrates KnowBe4, SAP AI Core Flaws, CISO Challenges, Layoffs
North Korean operative infiltrates KnowBe4, SAP AI Core vulnerabilities expose data, CISOs face regulatory challenges, and cybersecurity layoffs impact job seekers.
Newsletter
Jul 24, 2024
9 min read
The Perils of Platform Dependence: Lessons from the Great CrowdStrike Meltdown
The CrowdStrike Falcon Sensor update on July 19, 2024 caused global system outages, exposing risks of single vendor reliance. Learn why a resilient hybrid approach, open architectures and unified management is needed for effective cybersecurity architectures.
Newsletter
Jul 21, 2024
9 min read
Brief #61: Great CrowdStrike Meltdown, NSA AI security guide, dual-title CISOs, AppSec interviews
CrowdStrike update crashes Windows systems globally. NSA shares AI security best practices. Dual-title CISOs manage expanding business risk. AppSec interview questions.
Newsletter
Jul 18, 2024
4 min read
5 Strategies for Cybersecurity Leaders to Influence Without Authority
Discover 5 powerful strategies for cybersecurity leaders to influence without authority. Learn how to build trust, tell compelling stories, cultivate champions, leverage reciprocity, and align security with business outcomes.
Newsletter
Jul 14, 2024
9 min read
Brief #60: Blast-RADIUS Flaw, AI Disinformation Tool, CISO Lawsuits, Interview Tips
Week 28: Blast-RADIUS flaw impacts RADIUS implementations, Russian actors use AI for disinformation, cybersecurity leaders face legal risks, and tips to ace security interviews.
Newsletter
Jul 7, 2024
9 min read
Brief #59: OpenSSH RCE Flaw, AI Jailbreak Technique, Cybersecurity Market Failure, Job Tips
Week 27: OpenSSH RCE as root flaw affects 14M servers, new AI jailbreak bypasses guardrails, cybersecurity market failure needs regulation, tips to land a job.