Search insights on positioning, CISO buyers, and the market...
Insights / Brief

Brief

The Mandos Brief gives you a quick, 3-minute rundown of the week's top cybersecurity updates. It's your go-to source for staying informed and cyber-aware, fast.

150 articles
Mar 3, 2024 6 min read

Brief #41: 100k Infected Repos, Lazarus Zero-Day, Ubiquiti Hack

Ad fraud campaign using 8k+ domains, Lazarus Group's Windows zero-day exploit, and Russian hackers' Ubiquiti routers hijack.

Feb 25, 2024 6 min read

Brief #40: APT Hacks US Pharmacies, Apple Shortcuts Flaw

US pharmacies hit by nation-state cyberattack, Apple Shortcuts vulnerability, Microsoft's PyRIT for AI security, SSH-Snake exploited, LockBit disrupted.

Feb 18, 2024 5 min read

Brief #39: iOS Trojan Steals FaceID, Akira Attacks & More

Week's focus: iOS Trojan GoldPickaxe targeting APAC, Akira ransomware exploits Cisco vulnerability. Plus, Exchange Server risk and state-sponsored attacks.

Feb 11, 2024 5 min read

Brief #38: Dutch Military Hacked, BitLocker Bypassed and More

This week: Critical Linux Shim vulnerability exposed, Chinese espionage on Dutch Military, massive data theft by ResumeLooters, Ivanti's patch, BitLocker bypass.

Feb 4, 2024 5 min read

Brief #37: Cloudflare Breach, AnyDesk Hacked & More

This week's highlights: Nation-state hacks Cloudflare, Vimeo used for malware delivery. Mercedes GitHub leak & EFB hacking risks.

Jan 28, 2024 6 min read

Brief #36: APT29 Targets HPE, Blackwood APT & More

APT29's bold attacks on HPE and Microsoft, the rise of Blackwood APT with NSPX30, Jenkins server vulnerabilities, and more

Jan 21, 2024 6 min read

Brief #35: Russian Hack Hits Microsoft, Naz.API Breached

Explore Mandos Brief #35, week 3 of 2024: Midnight Blizzard's Microsoft email breach, Naz.API's 70M password leak, Chrome's critical zero-day. Stay secure.

Jan 14, 2024 5 min read

Brief #34: GitLab Zero-Click Hijack, Ivanti VPN Exploit and More

Explore Mandos Brief #34 for week 2 of 2024: GitLab's account takeover flaw, Ivanti VPN's APT exploitation, SpectralBlur backdoor, and latest ransomware decryptors.

Jan 7, 2024 6 min read

Brief #33: SMTP Smuggling, Google MultiLogin Exploit and More

SMTP Smuggling impacts email security, Google's MultiLogin exploit, BGP hijacking at Orange Spain, Bitwarden's CVE-2023-27706, and new DLL Hijacking in Windows.

Stop losing deals to vendors with worse products and better positioning

Get the CISO Lens: founder-led positioning audits, competitive benchmarks, and advisory for cybersecurity vendors who need CISOs to actually pay attention.