Search security leadership insights...

Brief

The Mandos Brief gives you a quick, 3-minute rundown of the week's top cybersecurity updates. It's your go-to source for staying informed and cyber-aware, fast.

132 Articles

Latest Insights in Brief

Brief #50: Postman API Credential Leaks, DHS AI Threat Guidelines, Effective Risk Communication, Cybersecurity Analyst Insights

Brief #50: Postman API Credential Leaks, DHS AI Threat Guidelines, Effective Risk Communication, Cybersecurity Analyst Insights

Week 18: Postman API network leaks thousands of live credentials, DHS releases guidelines to protect critical infrastructure from AI threats, cybersecurity leaders discuss overuse of "critical" and effective risk communication, and insights on the daily work of cybersecurity analysts.

May 5 8 min read
mandos brief newsletter week 17 of 2024

Brief #49: Palo Alto XDR Exploit, GPT-4 Vulnerability Exploitation, CISO Insights, and Top Cybersecurity Courses

Week 17: Palo Alto XDR exploited to deploy malware, researchers claim GPT-4 can autonomously exploit vulnerabilities, LinkedIn CISO shares leadership insights, top cybersecurity training courses and more.

Apr 28 8 min read
mandos brief week 16 nikoloz kokhreidze

Brief #48: PuTTY Zero-Day, LLMs as Pentesters, Securing Layoffs, High-Paying Cybersecurity Skills

Week 16: PuTTY vulnerability allows ECDSA key recovery, LLMs perform as well as humans in pentesting, securing mass layoffs with empathy, and top-paying cybersecurity skills.

Apr 21 8 min read
mandos brief newsletter week 15 2024 nikoloz kokhreidze

Brief #47: Palo Alto Zero-Day Exploited, AI-Powered Malware, CISO Burnout, and the Value of Mentorship

Week 15: State-sponsored attackers exploit Palo Alto Networks zero-day, cybercrime group uses AI-generated scripts to load malware, CISOs face burnout, and the importance of mentorship.

Apr 14 7 min read
mandos brief week 14 of 2024 nikoloz kokhreidze

Brief #46: HTTP/2 Flaws, Latrodectus Malware, Microsoft Exchange Breach

Week 14: Severe HTTP/2 vulnerabilities enable DoS attacks, new Latrodectus malware emerges, and the US Cyber Safety Board reports on a preventable Microsoft Exchange breach.

Apr 7 7 min read
mandos brief nikoloz kokhreidze week 13 2024

Brief #45: NHS Ransomware, XZ Utils Backdoor, PyPI Malware Flood

Week 13: UK's NHS suffers ransomware attack, critical backdoor found in XZ Utils, and PyPI suspends new projects after malicious package uploads.

Mar 31 6 min read
Brief #44: $1.13M Pwn2Own, M-Chip Flaw, 19M Plaintext Passwords mandos.io nikoloz kokhreidze

Brief #44: $1.13M Pwn2Own, M-Chip Flaw, 19M Plaintext Passwords

Week 12: Hackers win $1.13M at Pwn2Own, critical Apple M-chip vulnerability exposed, and 19 million plaintext passwords leaked from Firebase.

Mar 24 6 min read
Brief #43: ChatGPT Flaws, Roku Hacked, Tor's WebTunnel

Brief #43: ChatGPT Flaws, Roku Hacked, Tor's WebTunnel

Week 11: ChatGPT plugin vulnerabilities exposed, Roku suffers a credential stuffing breach impacting 15,000, and Tor Project unveils WebTunnel.

Mar 17 7 min read
Week 10 of 2024 in cybersecurity nikoloz kokhreidze mandos

Brief #42: Google AI Theft, Microsoft Breach, Apple Zero-Days, RA World Ransomware & More

Google AI trade secrets theft, Microsoft source code breach, Apple zero-days, QNAP vulnerabilities, RA World ransomware targeting healthcare and finance.

Mar 10 7 min read

Level Up Your Security Leadership

Join security leaders who receive knowledge and resources on becoming a more effective security leader. One actionable newsletter every week.

Trusted by security professionals at