Author: Staff Writer

Avatar photo

John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.

Summary Points Cyberattack on Qantas: Australia’s largest airline, Qantas, detected a cyberattack involving unauthorized access to a third-party customer service platform, exposing significant customer data but no financial information. Data Compromised: The breach impacts approximately 6 million customers with data including names, email addresses, phone numbers, birth dates, and frequent flyer numbers, prompting continued investigation by the airline. Suspected Threat Actor: The incident raises concerns about the "Scattered Spider" group, known for targeting aviation and other industries using social engineering tactics, although it’s unclear if they are directly involved in the Qantas breach. Preventative Measures: To combat such attacks, organizations…

Read More

One of the highest vendors with 100% of end users willing to recommend rating SentinelOne, a global leader in AI-powered security, announced that it has been named a ‘Strong Performer’ in the 2025 Gartner Peer Insights ‘Voice of the Customer’ for Cloud Security Posture Management tools (CSPM) report. It’s the latest recognition for SentinelOne which recently was positioned as a 2025 Customers’ Choice in the Voice of the Customer for Extended Detection and Response (XDR), a 2024 Customer’s Choice in the Voice of the Customer for Cloud-Native Application Protection Platforms (CNAPP), and a 2024 Customer’s Choice in the Voice of the Customer…

Read More

Cynet earns one of the highest customer ratings with 4.7 out of 5 stars and 95% willingness to recommend Cynet, provider of the All-in-One Cybersecurity Platform, announced it has been recognized as a Strong Performer in the 2025 Gartner Peer Insights “Voice of the Customer” for Extended Detection and Response (XDR) report. Based on more than 21 verified customer reviews collected over an 18-month period ending January 31, 2025, Cynet received an average rating of 4.7 out of 5 stars, with 95% of reviewers indicating a “willingness to recommend.” According to the report, vendors in the upper-left “Strong Performer” have…

Read More

SecurityScorecard, the creator of Supply Chain Detection and Response (SCDR) and leader in security risk ratings, announced that Dan Streetman, Chief Executive Officer of Tanium, a leader in Autonomous Endpoint Management (AEM), has been appointed to its Board of Directors as an independent director. Streetman is a business leader with more than twenty years of experience in enterprise software and information technology, and he brings significant expertise in leading breakthrough organizational transformation to the SecurityScorecard’s Board of Directors. “Dan built and scaled enterprise software companies and understands the operational challenges our customers face,” said Dr. Aleksandr Yampolskiy, CEO and Co-Founder of SecurityScorecard.…

Read More

Exabeam, a global leader in intelligence and automation for security operations, announced a major expansion of its integrated multi-agent AI system Exabeam Nova that now equips security leaders with a real-time strategic planning engine and boardroom communication tool. The Exabeam Nova Advisor Agent is the industry’s first AI capability designed to turn security data into a strategy that CISOs can defend in the boardroom. Translating complex security metrics into business-relevant terms has been a long-standing challenge, making it difficult to demonstrate risk reduction, prove the value of security investments, and show measurable progress. The new Exabeam Nova Advisor Agent solves that problem.…

Read More

LevelBlue Strengthens Market-Leading Managed Detection and Response Services with Advanced AI Capabilities, While Adding Prestigious FedRAMP and StateRAMP Authorizations LevelBlue, a global leader in cloud-based, AI-driven managed security services (MSS), has signed a definitive agreement to acquire Trustwave, a global provider of cybersecurity and managed detection and response (MDR) services from the MC Security Fund (MC), a private equity fund sponsored by The Chertoff Group, an internationally recognized security and growth advisory firm. This strategic acquisition complements LevelBlue’s recent agreement to acquire Aon’s cybersecurity consulting business, formerly known as Stroz Friedberg, and further strengthens the company’s market leadership, uniting two leading Managed Security Service Providers (MSSPs) to deliver unparalleled cybersecurity…

Read More

Apptium technology accelerates TD SYNNEX’s multi-year development of the company’s StreamOne platform, enhances its cloud commerce platform and simplifies complexity. TD SYNNEX announced it has acquired Apptium, a software development company and provider of a cloud commerce platform that connects the world’s applications, data and devices. The acquisition reflects a critical investment in TD SYNNEX’s technology solutions orchestration strategy and expands the company’s depth and breadth of cloud and everything-as-a-service offerings. StreamOne is the foundation of TD SYNNEX’s digital business orchestration strategy, which puts ecosystem partners in control through data-driven decisions, customer insights and solutions aggregation. Prior to the acquisition,…

Read More

Summary Points AT&T introduced a security feature called "Wireless Lock," designed to prevent SIM swapping by restricting changes to account information and phone number porting when activated. SIM swap attacks allow cybercriminals to transfer phone numbers to their devices, enabling them to intercept calls, texts, and multi-factor authentication codes, potentially compromising sensitive accounts. Although AT&T’s feature provides enhanced security, its late introduction compared to rivals like Verizon highlights a delay in addressing a long-recognized vulnerability linked to multiple high-profile attacks. Recent incidents reveal that SIM swap attacks often involve bribing telecom employees, prompting the FCC to implement new rules for…

Read More

Enables direct and seamless integration with AI models and threat intel giving security teams ability to securely leverage AI, control access and respond faster SOCRadar, a global leader in extended threat intelligence and cybersecurity, launched its MCP Server to support its threat intelligence platform. MCP (Model Context Protocol) is a standardized interface that allows AI language models to securely connect with external data sources enabling AI assistants to access real-time information, interact with databases and APIs, and use various services while maintaining proper security boundaries. As cybersecurity teams increasingly rely on AI agents for threat analysis and incident response, SOCRadar…

Read More

Fast Facts Sanctions Imposed: The U.S. Department of the Treasury has sanctioned Russian hosting company Aeza Group and four operators for facilitating ransomware, infostealer operations, illicit drug markets, and disinformation efforts. Allegations of Criminal Activity: Aeza Group allegedly provided services to high-profile cybercriminal operations, including the BianLian ransomware gang and the BlackSprut darknet marketplace, while previously supporting a disinformation campaign targeting Western audiences. Key Operators Identified: The sanctioned individuals include CEO Arsenii Penzev, general director Yurii Bozoyan, technical director Vladimir Gast, and manager Igor Knyazev, all of whom face asset freezes and business restrictions in the U.S. Prior Crackdowns: These…

Read More