Brief #122: CrowdStrike npm Attack, SonicWall Cloud Breach, ChatGPT Zero-Click
Ransomware payments dropped to $115K median but hit 44% of all breaches. Cybersecurity pros can't find jobs despite 10+ years experience.
Market pulse, proprietary signals from 9,000+ tracked products and 3,200+ vendors, and the CISO buyer take. Ten minutes, every Monday.
The cybersecurity market, made readable in the time it takes to drink your coffee.
The week's biggest cybersecurity funding rounds, M&A deals, and category shifts. With a "what it signals" column, so you know what each move means for your competitive landscape.
One proprietary data story per week, pulled from CybersecTools (9,000+ products tracked) and CybersecRadars (3,200+ vendors). Momentum gainers, hiring trends, category leadership shifts. Insights you cannot get anywhere else.
Thirteen years on the cybersecurity buyer side, translated into concrete advice on what would actually move a CISO this week and what would not.
Three sections. Built to make the cybersecurity market readable in ten minutes.
The week's biggest funding rounds, M&A deals, and category shifts. Each row tagged with what it signals for the competitive landscape.
One proprietary data story per week from 9,000+ tracked products and 3,200+ vendors. Momentum, hiring, mindshare, category leadership. Insights you cannot get anywhere else.
Thirteen years on the cybersecurity buyer side, translated into concrete advice on what would actually move a CISO this week and what would not.
Browse the archive of past issues.
Ransomware payments dropped to $115K median but hit 44% of all breaches. Cybersecurity pros can't find jobs despite 10+ years experience.
AI agents now exploit zero-days in under 10 minutes while energy sector attacks surge 586%. Web3 hackers earn millions as traditional security salaries lag behind.
Colombian malware campaign using SVG files went completely undetected by all antivirus engines. C-suite executives show dangerous overconfidence compared to frontline security teams.
Netskope files IPO with $707M ARR amid cybersecurity M&A surge. Industry training decline leaves newcomers struggling despite credentials and certs.
Initial Access Brokers surge 90% targeting smaller US companies. Machine identities now outnumber humans 80 while most orgs lack AI security controls.
LayerX researchers expose "Man-in-the-Prompt" attacks turning AI assistants into hacking copilots. CISA releases zero trust microsegmentation guidance as Python skills become mandatory for 50%+ of cyber jobs.
RomCom exploits WinRAR zero-day for malware deployment. North Korean UNC4899 steals millions in cryptocurrency through sophisticated cloud attacks.
Auto-Color backdoor exploits SAP NetWeaver via CVE-2025-31324 targeting US chemicals company. Cursor IDE vulnerability enables full RCE through prompt injection attacks.
Scattered Spider resurfaces with $592M in damages across 11 major attacks. Nigerian cybercrime ring targets aviation execs with six-figure BEC losses.
Subscribe to The Mandos Brief: weekly market intelligence backed by 9,000+ tracked products and 3,200+ vendors. Ten minutes, every Monday.