Brief #137: Chrome Extension Supply Chain Attack, MCP Servers Expose AWS Keys, Record CVE Year
Nikoloz Kokhreidze
8 min read
15.28% of employees run unverified MCP servers accessing credentials with zero visibility. Experienced CISSP holders apply to 100+ jobs for single interview as AI screening dominates. Manufacturing hit hardest by Google Cloud phishing at 19.6% of targets.
Member-Only Content
Join Mandos to Continue Reading
Get instant access to this article and the Mandos Brief - your weekly 10-minute security leadership update.
Already a member? Sign in
Share With Your Network
Check out these related posts
Apr 5, 2026
10 min read
Brief #149: FortiClient EMS Zero-Day, EU Commission 340GB Breach, LinkedIn BrowserGate
Mar 29, 2026
6 min read
Brief #148: Telnyx PyPI Supply Chain Attack, F5 BIG-IP RCE Exploited, Databricks Launches Lakewatch SIEM
Mar 22, 2026
10 min read
