Mandos Brief Newsletter

Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.

Please hold while we check our collection.

Something's gone wrong. Please try again.

Success! Check your inbox for our email.

I will never spam or sell your information.

What do you get?

Weekly dose of the most crucial cybersecurity news
Practical insights from top cybersecurity leaders
Tailored career advice to help you succeed
Cyber Strategy OS - a curated collection of tools and resources
Inside scoops on promising startups and technologies
Hand-picked selection of the best infosec articles
Cybersecurity knowledge boost in under 8 minutes a week
100% free, unsubscribe anytime!

Read by professionals from

Apple
Philips
Toyota
Palto Alto Networks
Zcaler
SentinelOne

Previous Issues of Mandos Brief

Brief #51: VPN Decloaking Attack, Azure Health Bot Vulnerabilities, CISO Dissatisfaction, and Incident Response Challenges

Week 19: VPN decloaking attack discovered, Azure Health Bot vulnerabilities exposed, CISOs face growing dissatisfaction, and the demanding role of incident responders.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 8 min read

Brief #50: Postman API Credential Leaks, DHS AI Threat Guidelines, Effective Risk Communication, Cybersecurity Analyst Insights

Week 18: Postman API network leaks thousands of live credentials, DHS releases guidelines to protect critical infrastructure from AI threats, cybersecurity leaders discuss overuse of "critical" and effective risk communication, and insights on the daily work of cybersecurity analysts.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 8 min read

Brief #49: Palo Alto XDR Exploit, GPT-4 Vulnerability Exploitation, CISO Insights, and Top Cybersecurity Courses

Week 17: Palo Alto XDR exploited to deploy malware, researchers claim GPT-4 can autonomously exploit vulnerabilities, LinkedIn CISO shares leadership insights, top cybersecurity training courses and more.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 7 min read

Brief #48: PuTTY Zero-Day, LLMs as Pentesters, Securing Layoffs, High-Paying Cybersecurity Skills

Week 16: PuTTY vulnerability allows ECDSA key recovery, LLMs perform as well as humans in pentesting, securing mass layoffs with empathy, and top-paying cybersecurity skills.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 8 min read

Brief #47: Palo Alto Zero-Day Exploited, AI-Powered Malware, CISO Burnout, and the Value of Mentorship

Week 15: State-sponsored attackers exploit Palo Alto Networks zero-day, cybercrime group uses AI-generated scripts to load malware, CISOs face burnout, and the importance of mentorship.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 7 min read

Brief #46: HTTP/2 Flaws, Latrodectus Malware, Microsoft Exchange Breach

Week 14: Severe HTTP/2 vulnerabilities enable DoS attacks, new Latrodectus malware emerges, and the US Cyber Safety Board reports on a preventable Microsoft Exchange breach.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 7 min read

Brief #45: NHS Ransomware, XZ Utils Backdoor, PyPI Malware Flood

Week 13: UK's NHS suffers ransomware attack, critical backdoor found in XZ Utils, and PyPI suspends new projects after malicious package uploads.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 6 min read

Brief #44: $1.13M Pwn2Own, M-Chip Flaw, 19M Plaintext Passwords

Week 12: Hackers win $1.13M at Pwn2Own, critical Apple M-chip vulnerability exposed, and 19 million plaintext passwords leaked from Firebase.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 6 min read

Brief #43: ChatGPT Flaws, Roku Hacked, Tor's WebTunnel

Week 11: ChatGPT plugin vulnerabilities exposed, Roku suffers a credential stuffing breach impacting 15,000, and Tor Project unveils WebTunnel.

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 7 min read