Topic
Perspectives

CTI Roundup: Social Engineering, DNS Tunneling, & Malvertising
Beware of an ongoing campaign targeting enterprises and other current cyber threat news to know.

The SEC Prepares to Regulate – and Regulate – the Finserv Sector
In a bid to tighten its cybersecurity and technology policy, the SEC is prepping a dizzying slew of regulations. We lay out the proposed new rules, the rancor, and the rocky road ahead.

CTI Roundup: Q1 Exploit Trends, HijackLoader, & the State of Pentesting
Kaspersky reveals the top exploit and vulnerability trends for the first quarter of 2024, HijackLoader evolves with new evasion techniques, and Cobalt releases its 2024 State of Pentesting report.

As Federal Hiring Deadline Looms, Chief AI Officers Are in Demand. Here’s Where to Find Yours
Finding the right chief AI officer (CAIO) requires a blend of strategic foresight and creativity. The talent pool is small, but we’ve ID’d a few avenues to explore.

CTI Roundup: Cuttlefish Malware, Hackers Leverage Docker Hub
Cuttlefish malware targets SOHO routers, nation states and cybercriminals share compromised networks, and threat actors use Docker Hub to spread malware and phishing scams.

RSA 2024 Preview: C-Suite Lessons on Compliance and the SEC Cybersecurity Rule
In the final installment of our three-part series leading up to RSA Conference 2024, Jim Mirochnik of Halock Security Labs shares tips on establishing legal defensibility and clear lines of acceptable risk.

CTI Roundup: ToddyCat APT, GuptiMiner Malware, APT28 Exploits a Windows Print Spooler Flaw
ToddyCat deploys advanced tools for industrial scale data theft, hackers use eScan updates to spread GuptiMiner malware, and Russia’s APT28 exploits a Windows Print Spooler flaw.

Top 10 Takeaways from Tanium’s 2024 FedCyber Exchange
Event highlights from federal IT and cybersecurity leaders, experts, and partners.

RSA 2024 Preview: Applying Past Lessons for Intel-Driven Identity Threat Detection
In the second of our three-part RSA preview, Focal Point asks Cisco Talos’ Nicole Hoffman of about IAM–and an unusual book.

RSA 2024 Preview: How to Manage Vulnerabilities at Scale
In the first of our three-part sneak-peek at RSA Conference 2024, Focal Point sits down with Tanium’s Melissa Bischoping to discuss vulnerability management – the blunders, best practices, and tools that can help.

CTI Roundup: A Malicious Notepad++ Plugin, “Junk Gun” Ransomware, and a Google Malvertising Campaign
Researchers discover modified Notepad++ plug-in, new junk gun ransomware appears on cybercrime forums, and a malvertising campaign targets IT teams.

CISO Success Story: A Real-Life Marvel ‘Superhero’ on AI Fighting Cybercrime
With hackers weaponizing AI at an alarming rate, we asked former Marvel CISO Mike Wilkes how it can also be used to counter these threats.