Search security leadership insights...

Brief

The Mandos Brief gives you a quick, 3-minute rundown of the week's top cybersecurity updates. It's your go-to source for staying informed and cyber-aware, fast.

138 Articles

Latest Insights in Brief

mandos brief cybersecurity newsletter

Brief #137: Chrome Extension Supply Chain Attack, MCP Servers Expose AWS Keys, Record CVE Year

15.28% of employees run unverified MCP servers accessing credentials with zero visibility. Experienced CISSP holders apply to 100+ jobs for single interview as AI screening dominates. Manufacturing hit hardest by Google Cloud phishing at 19.6% of targets.

Jan 4 8 min read
Mandos brief Newsletter

Brief #136: Cisco Gateway Attacks Require Full Rebuild, 97% CISOs Adopt Hybrid, MongoDB Critical Patch

Anthropic's Deputy CISO forces AI chatbot on community despite votes, causing mass exodus. Actor lands consultant role in 2 years, CompTIA certs beat traditional degrees.

Dec 28 9 min read
mandos brief cybersecurity newsletter fractional CISO

Brief #135: GitHub Enables Cross-Cloud Attacks, AI Agents Risk 76% of Orgs, Entry Salaries Drop 30%

WhatsApp Silent Whisper flaw enables covert tracking with just phone numbers. Security incidents with $200K+ damages doubled to 13% as hybrid IT adoption hits 77%.

Dec 21 8 min read
cybersecurity newsletter leading fractional CISO practice in Europe

Brief #134: Google Drive Backdoor, AI Beats Human Pen Testers, Worst Job Market in 15 Years

NANOREMOTE blends attacks through Google's API undetected. AI agents now surpass most human security testers in live enterprise assessments.

Dec 14 8 min read
mandos brief cybersecurity newsletter

Brief #133: Next.js RCE Affects 39% Cloud Environments, AI Agents Steal $4.6M, Supply Chain Breach Crisis

ServiceNow acquires Veza for $1B+ to expand identity security. Security leaders face burnout managing cloud, AI, and compliance with understaffed teams and limited autonomy.

Dec 7 8 min read
cybersecurity newsletter mandos brief by nikoloz kokhreidze

Brief #132: Microsoft Defender Bypass, Chinese AI Autonomous Hacking, Salaries Go Down

Shai-Hulud 2.0 compromises 25,000+ npm repositories for credential harvesting. Early AI security adopters see 67% security posture improvement and 70% breach risk reduction.

Nov 30 8 min read
mandos brief cybersecurity newsletter fractional CISO vCISO

Brief #131: Sturnus Trojan Bypasses WhatsApp Encryption, ServiceNow AI Agents Exploited, CISO Pay Up 6.7%

Azure mitigated a record-breaking 15.72 Tbps DDoS attack from 500K+ IPs. Security budgets grew only 4% while executive compensation surged, creating resource allocation challenges.

Nov 23 8 min read
mandos brief cybersecurity newsletter best fractional CISO Europe Nikoloz Kokhreidze

Brief #130: Amazon Detects APT Zero-Days, Claude AI Exploited for Espionage, $1M-$10M Insider Losses

Chinese actors autonomously attacked 30 major tech firms using manipulated AI. 41% of breached orgs lost millions to insiders. DPRK targets developers via JSON storage services.

Nov 16 8 min read
mandos brief cybersecurity newsletter fractional ciso

Brief #129: 7 ChatGPT Vulnerabilities, New OWASP 2025 Top 10, 2 Million Jobs Myth

Samsung Galaxy zero-day exploited by LANDFALL spyware for surveillance across Middle East. Social engineering attacks surge 1,450% in H1 2025 with breakout times under 60 minutes.

Nov 9 11 min read

Level Up Your Security Leadership

Join security leaders who receive knowledge and resources on becoming a more effective security leader. One actionable newsletter every week.

Trusted by security professionals at