Search security leadership insights...

Brief

The Mandos Brief gives you a quick, 3-minute rundown of the week's top cybersecurity updates. It's your go-to source for staying informed and cyber-aware, fast.

140 Articles

Latest Insights in Brief

Brief #139: AWS SDK Supply Chain Flaw, AI Cuts Breach Time to 25 Min, CrowdStrike Buys Seraphic

Brief #139: AWS SDK Supply Chain Flaw, AI Cuts Breach Time to 25 Min, CrowdStrike Buys Seraphic

Microsoft patches actively exploited Windows flaw enabling ransomware bypass. 99% of organizations running production AI experienced attacks. Change Healthcare breach cost $1.15B, exposed 190M records.

Jan 18 7 min read
mandos brief cybersecurity newsletter

Brief #138: 41% Hired AI Deepfake Candidates, Zestix Breaches 50+ Enterprises, CrowdStrike $740M Deal

AI-generated code contains 1.7x more security vulnerabilities and 75% more logic errors than human-written code. Defense contractors leaked ITAR-controlled blueprints due to missing MFA enforcement.

Jan 11 9 min read
mandos brief cybersecurity newsletter

Brief #137: Chrome Extension Supply Chain Attack, MCP Servers Expose AWS Keys, Record CVE Year

15.28% of employees run unverified MCP servers accessing credentials with zero visibility. Experienced CISSP holders apply to 100+ jobs for single interview as AI screening dominates. Manufacturing hit hardest by Google Cloud phishing at 19.6% of targets.

Jan 4 8 min read
Mandos brief Newsletter

Brief #136: Cisco Gateway Attacks Require Full Rebuild, 97% CISOs Adopt Hybrid, MongoDB Critical Patch

Anthropic's Deputy CISO forces AI chatbot on community despite votes, causing mass exodus. Actor lands consultant role in 2 years, CompTIA certs beat traditional degrees.

Dec 28 9 min read
mandos brief cybersecurity newsletter fractional CISO

Brief #135: GitHub Enables Cross-Cloud Attacks, AI Agents Risk 76% of Orgs, Entry Salaries Drop 30%

WhatsApp Silent Whisper flaw enables covert tracking with just phone numbers. Security incidents with $200K+ damages doubled to 13% as hybrid IT adoption hits 77%.

Dec 21 8 min read
cybersecurity newsletter leading fractional CISO practice in Europe

Brief #134: Google Drive Backdoor, AI Beats Human Pen Testers, Worst Job Market in 15 Years

NANOREMOTE blends attacks through Google's API undetected. AI agents now surpass most human security testers in live enterprise assessments.

Dec 14 8 min read
mandos brief cybersecurity newsletter

Brief #133: Next.js RCE Affects 39% Cloud Environments, AI Agents Steal $4.6M, Supply Chain Breach Crisis

ServiceNow acquires Veza for $1B+ to expand identity security. Security leaders face burnout managing cloud, AI, and compliance with understaffed teams and limited autonomy.

Dec 7 8 min read
cybersecurity newsletter mandos brief by nikoloz kokhreidze

Brief #132: Microsoft Defender Bypass, Chinese AI Autonomous Hacking, Salaries Go Down

Shai-Hulud 2.0 compromises 25,000+ npm repositories for credential harvesting. Early AI security adopters see 67% security posture improvement and 70% breach risk reduction.

Nov 30 8 min read
mandos brief cybersecurity newsletter fractional CISO vCISO

Brief #131: Sturnus Trojan Bypasses WhatsApp Encryption, ServiceNow AI Agents Exploited, CISO Pay Up 6.7%

Azure mitigated a record-breaking 15.72 Tbps DDoS attack from 500K+ IPs. Security budgets grew only 4% while executive compensation surged, creating resource allocation challenges.

Nov 23 8 min read

Level Up Your Security Leadership

Join security leaders who receive knowledge and resources on becoming a more effective security leader. One actionable newsletter every week.

Trusted by CISOs, Founders, and Cybersecurity Builders