Topic
Perspectives

CISO Success Story: Predicting Cyber Risk (Accurately) Is Easier With This Guy’s Formula
Ash Hunt of Apex Group piloted a statistic-driven model for predicting cyber risk events. Here’s why playing the numbers is better than hunches.

The SLCGP Is Another Year Older. Here’s What You Need to Know About Federal Cyber Grants
SLCGP funds might not be around for long, so entities that prepare for its next phase will have the best shot at protecting their networks and constituents.

CTI Roundup: Remcos RAT Phishing Attacks, New Meduza Stealer Found on Dark Web
CISA adds two bugs to the KEV catalog, UAC-0050 distributes Remcos RAT with phishing tactics, and an updated version of Meduza Stealer launches on the dark web.

CTI Roundup – top 2023 stories: The latest on Chae$ 4, 3AM ransomware, DarkGate, and Andariel
Tanium’s Cyber Threat Intelligence (CTI) team looks at some of the top cybersecurity developments from 2023 that will continue to pose threats in 2024.

CTI Roundup: TA4557, OAuth Cryptomining, and the China-based KEYPLUG backdoor
TA4557 targets recruiters via email, threat actors use OAuth apps to automate BEC and cryptomining attacks, and researchers discover Sandman APT’s connection to the China-based KEYPLUG backdoor.

The 3 Biggest GenAI Threats (Plus 1 Other Risk) and How to Fend Them Off
As enterprises deploy generative AI to boost productivity, they need to be prepared for the associated risks. We checked with experts to outline the ways AI tech is vulnerable. SBOMs and other defense strategies will help, but getting this right this may take some trial and error.

Misinformation / Disinformation, Part 2 – Bringing Old-School Cybersecurity to a New Fight
Deepfakes are harder to spot thanks to AI, making it easier to tarnish your brand. But old-school cybersecurity tactics can thwart these new threats.

CTI Roundup: Russian threat actor APT28 exploits Outlook vulnerability
APT28 exploits a critical Outlook vulnerability, QR phishing campaigns grow more complex, and an SQL brute force attack results in BlueSky ransomware.

CISO Success Story: How LA County Trains (and Retrains) Workers to Fight Phishing
The CISO for LA County, who oversees 100,000 employees, shares tips on cross-agency info-sharing, ongoing audits, and aggressive awareness training.

Misinformation / Disinformation, Part 1 – The Coming Crisis and Enterprises Most at Risk
Bad actors are using inaccuracies, lies, and sophisticated deepfakes to target organizations. Here’s why enterprises—big and small—must take it seriously.

CTI Roundup: Multiple Cyber Threats from North Korean Groups and a Telegram Bot Phishing Scam
North Korean hackers pose as job seekers and recruiters, the Telekopye Telegram bot enables large-scale phishing scams, and DPRK-aligned threat actors target macOS in two campaigns.

CTI Roundup: AlphaLock, a New Russian Hacking Group is Discovered
Researchers discover a new Russian hacking group, Rhysida ransomware threatens multiple sectors, and a new campaign targets public Docker Engine APIs.