- Home
- Cybercrime and Ransomware
- Emerging Tech
- Threat Intelligence
- Expert Insights
- Careers and Learning
- Compliance
Subscribe to Updates
Subscribe to our newsletter and never miss our latest news
Subscribe my Newsletter for New Posts & tips Let's stay updated!
Author: Staff Writer
John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.
At this year’s Black Hat USA conference, HPE unveiled a robust set of cybersecurity solutions. These solutions help enterprise organizations secure their hybrid cloud environments. Whether at speed, intelligence, and with regulatory-grade resilience. The updates consisted of an AI-enabled SASE Copilot for threat triage. It is the industry’s fastest enterprise backup engine. One that hits 1.2 petabytes or better per hour. An integrated ransomware recovery offering built alongside CrowdStrike. These updates resonate with changing CISO priorities. And to expand zero trust enforcement, automate threat response, and harden the resilient infrastructure against interruptive cyberattacks. Together, they move HPE through its evolution…
Andersen Consulting enhances its digital transformation and cybersecurity capabilities with the addition of collaborating firm Systematix, a leading technology consultancy known for delivering innovative digital enablement solutions that drive operational efficiency, growth, and competitive advantage. Cyber Technology Insights : Push Security Unveils Matrix to Expose Gaps in Phishing Detection Techniques Founded in 1975, Systematix offers end-to-end consulting and implementation services across digital transformation, enterprise application development, ERP, business analytics, IT strategy, and cybersecurity. With hundreds of seasoned consultants and technologists, Systematix helps clients navigate complex business challenges by leveraging emerging technologies and tailoring scalable solutions across a range of robust industries, including…
KnowBe4, the world-renowned cybersecurity platform that comprehensively addresses human risk management (HRM), is proud to highlight the success of its customers in achieving remarkable transformations in their HRM programs. By leveraging KnowBe4’s HRM+ platform and advanced AI-driven products including AIDA (Artificial Intelligence Defense Agents), customers like First Community Credit Union have reduced their Phish-prone Percentage (PPP) to a near-perfect one percent. Cyber Technology Insights : Push Security Unveils Matrix to Expose Gaps in Phishing Detection Techniques AIDA combines human expertise with advanced AI to give organizations a clear view of their human risk and the tools to reduce it. Powered by the…
Top Highlights A malicious campaign named ‘GreedyBear’ has infiltrated the Mozilla add-ons store, deploying 150 fake extensions designed to steal cryptocurrency wallet credentials, resulting in losses of around $1,000,000. The extensions initially appear benign, accumulating fake positive reviews before being modified to incorporate malicious code that captures user data via keyloggers and sends it to the attackers’ servers. Koi Security discovered that the operation utilizes AI to enhance the scalability and evasion tactics of cybercriminals, enabling rapid recovery from takedowns and indicating potential expansion plans to the Chrome Web Store. To protect against similar threats, users are advised to verify…
OneLayer, the leading provider of private LTE/5G security and device management solutions, and Check Point Software Technologies, a global cybersecurity leader, announced a new integration designed to enable context-based enforcement and seamless policy management across private cellular and OT environments. This partnership allows enterprises to secure dynamic and complex private cellular networks as they expand connected device use in operational settings. The joint solution builds on OneLayer’s approach of bridging the specific operational and security requirements of OT, IT, and private cellular environments. OneLayer collects detailed real-time context—such as device identity, SIM and IP status, location, and behavioural changes—from both…
Summary Points Data Breach Incident: Bouygues Telecom confirmed a cyberattack on August 4, 2025, compromising the personal information of 6.4 million customers, including contact details, contract info, and IBANs, but no credit card numbers or passwords. Cybersecurity Response: The company has resolved the situation, blocking the attackers’ network access and increasing security measures while informing customers of potential fraud risks through SMS and email. Ongoing Investigations: The attack was attributed to a known cybercriminal group, with the company cooperating with the French National Cybersecurity Agency and the CNIL regarding ongoing investigations. Industry Concerns: This breach follows a similar attack on…
Solutions redefine managed security services with a threat-informed defense for measurable security outcomes CyberProof, a UST company and leading provider of managed security services, announced major enhancements to its Exposure & Defense Management capabilities and the introduction of cybersecurity Estate Management. These new Threat-Led defense capabilities allow organizations to proactively reduce exposure, improve detection for faster response, and demonstrate business value through measurable security outcomes in a unified platform. The introduction of cybersecurity Estate Management as a core capability gives organizations the ability to streamline the discovery of all assets across hybrid environments and ensure they are properly managed from a security perspective. This…
Quick Takeaways Malware Distribution: The SocGholish (FakeUpdates) malware, attributed to threat actor TA569, utilizes Traffic Distribution Systems (TDSs) like Parrot and Keitaro to redirect users to malicious content, primarily by masquerading as software updates. MaaS Model: SocGholish operates on a Malware-as-a-Service (MaaS) framework, selling compromised systems as entry points to various cybercriminal groups including Evil Corp and LockBit. Operational Techniques: Infections often stem from compromised websites using direct JavaScript injections, while TDS systems perform extensive visitor fingerprinting to filter and direct traffic based on predefined criteria. Evolving Tactics: Recent updates in related malware, such as Raspberry Robin, show enhanced obfuscation…
Company leads the market with specialized agent security, enabling safe, scalable adoption of Agentic AI across the enterprise Noma Security, the leading AI security company, announced the launch of its AI Agent Security solution, making it the first AI security platform capable of securing agentic AI at scale. This release extends Noma’s extensive security platform for enterprise AI, to address the unique risks introduced by agentic AI, providing security teams with the tooling required to discover, monitor, and govern these advanced autonomous agents and to confidently deploy agentic AI across their organizations. Cyber Technology Insights : Push Security Unveils Matrix to Expose Gaps in Phishing Detection…
Quick Takeaways New EDR Killer Tool Identified: A new tool, an evolution of ‘EDRKillShifter’ developed by RansomHub, is employed by eight ransomware gangs, including Medusa and Qilin, to disable security systems during attacks. BYOVD Attack Mechanism: The tool utilizes a self-decoding binary that loads a malicious driver using stolen certificates, mimicking legitimate files to gain kernel privileges and disable antivirus and EDR processes. Targeted Security Vendors: The EDR killer specifically targets major security vendors such as Microsoft Defender, Sophos, and Kaspersky, highlighting a coordinated effort among ransomware groups to exploit vulnerabilities in security software. Collaborative Tool Development: Evidence suggests that…