- Home
- Cybercrime and Ransomware
- Emerging Tech
- Threat Intelligence
- Expert Insights
- Careers and Learning
- Compliance
Subscribe to Updates
Subscribe to our newsletter and never miss our latest news
Subscribe my Newsletter for New Posts & tips Let's stay updated!
Author: Staff Writer
John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.
New investment from Metropolitan Partners Group positions Nexus IT to lead a values-aligned M&A model reshaping the managed services landscape. Nexus IT, a nationally recognized Managed Services and Cybersecurity provider, in partnership with Diatonic Healthcare, announced a $60 million capital commitment from Metropolitan Partners Group. The investment will accelerate Nexus IT’s nationwide growth strategy, fueling its acquisition of culturally aligned managed service providers (MSPs) that share its vision of exceptional client service and operational excellence— specifically in highly regulated industries such as healthcare, finance, and legal. This capital commitment marks a pivotal milestone in Nexus IT’s journey to build a next-generation M&A platform—one that stands apart from conventional investor rollups. Rather than pursuing scale at all costs, Nexus IT is expanding through a founder-led, mission-aligned approach focused on…
Quick Takeaways AI Integration: AI is set to significantly transform Security Operations Centers (SOCs) by automating repetitive tasks, but human oversight remains essential for managing cybersecurity incidents and understanding unique network configurations. Task Automation Limitations: While AI can assist with complex search queries and incident summaries, reliance on AI for crucial tasks like patching legacy systems or strategic risk analysis poses risks due to its current limitations in replicating human judgment and expert knowledge. Workforce Enhancement: Experts stress that AI should be viewed as a tool to enhance SOC analysts’ skills rather than a replacement; organizations risk underdeveloping staff if…
Top Highlights Operation Secure, led by Interpol from January to April 2025, disrupted infostealer malware networks across 26 countries, resulting in 32 arrests, the seizure of 41 servers, and the takedown of over 20,000 malicious IPs/domains. The operation targeted infostealers that steal sensitive financial and personal data, including account credentials and cryptocurrency information, selling this data on cybercrime markets or using it for targeted attacks. Significant outcomes included the notification of 216,000 victims and the identification of a large cluster of 117 servers in Hong Kong serving as command-and-control infrastructure for various cyber scams. Collaborating with private cybersecurity partners like…
Under new agreement, Cloudinary will power Akamai Video Manager and join Akamai’s Qualified Compute Partner Program Akamai Technologies, the cybersecurity and cloud computing company that powers and protects business online, announced a strategic partnership with Cloudinary under which its next-generation Video Manager solution will be powered by Cloudinary. The new alliance brings Cloudinary’s AI-powered video solution to Akamai Video Manager customers to make video management and delivery easier by alleviating common video challenges, including performance optimization and time-intensive post-production work. Together they will address the growing demand for and need to deliver exceptional video experiences, for every user, on any device and channel.…
Summary Points Exposed Cameras: Over 40,000 security cameras globally, notably 14,000 in the US, are accessible via the internet, posing severe cybersecurity risks. Types and Vulnerabilities: HTTP and RTSP cameras can unintentionally expose live feeds or their administrative interfaces, making them targets for cyberattacks, espionage, and stalking. Prevalent Industries: The telecommunications sector accounts for 79% of these exposed cameras, followed by technology (28.4%) and media/entertainment (19.6%), with significant risks across multiple sectors. Protection Measures: Users are advised to secure connections, change default credentials, disable unnecessary remote access, keep devices updated, and monitor for unusual logins to safeguard their privacy. Problem…
Old-school security awareness training (SAT) programs aren’t cutting it against today’s hackers thanks to boring content and one-size-fits-all delivery methods. That’s why Huntress has launched Threat Simulator, a new feature for Huntress Managed SAT that gives users hands-on training with real-world hacker tradecraft. Paired with engaging, expert-backed episodes, Threat Simulator turns passive learning into active skill-building through quick, game-like simulations. Perfect for experiential learners, these simulations put users in hackers’ shoes, challenging them to carry out simulated attacks to understand the mindsets, methods, and motives of cybercriminals. This unique approach shows just how easily anyone can become a target and how little effort it…
UPDATETwo separate Mirai botnet campaigns are exploiting a critical flaw in a somewhat unlikely target.The Akamai Security Intelligence and Response Team recently observed exploitation of CVE-2025-24016, a remote code execution vulnerability in the open source Wazuh cybersecurity platform. The flaw, which was assigned a 9.9 CVSS score, stems from an unsafe deserialization issue that affects versions 4.4.0 to 4.9.1 of the platform.CVE-2025-24016 was publicly disclosed Feb. 10, and a proof-of-concept (PoC) exploit was published on GitHub later that month. Akamai researchers observed exploitation activity starting in early March.”This is the latest example of the ever-shrinking time-to-exploit timelines that botnet operators have…
Operation Secure: INTERPOL Takes Down 20,000+ Malicious IPs Linked to 69 Malware Variants
Fast Facts Operation Secure Success: INTERPOL dismantled over 20,000 malicious IP addresses linked to 69 types of information-stealing malware, resulting in the takedown of 79% of identified suspicious IPs from January to April 2025, with 32 arrests and significant data seizures. Key Arrests and Operations: Vietnamese authorities arrested 18 suspects and seized devices and money worth $11,500, while additional arrests occurred in Sri Lanka and Nauru, underscoring international cooperation in combating cybercrime. Command-and-Control Servers: Hong Kong Police identified 117 malicious command-and-control servers across multiple ISPs, facilitating operations like phishing and online fraud, revealing the extensive network behind these cyber activities.…
SailPoint, Inc., a leader in unified identity security, announced the June launch of its first Software-as-a-Service (SaaS) instance in South America, hosted on Amazon Web Services (AWS) in Brazil. This launch highlights the strategic expansion of SailPoint’s global footprint and demand for identity security solutions around the world. The Brazil SaaS instance will support increasing demand for SailPoint Identity Security Cloud regionally, addressing expectations around data sovereignty, regulatory compliance and security. The new instance will enable organizations in highly regulated industries—such as finance, healthcare and government—to unlock the business value of cloud adoption and leverage SailPoint’s industry-leading identity security platform,…
Fast Facts Funding Achievement: Horizon3.ai has successfully raised $100 million in Series D funding, bringing its total to over $218 million, led by NEA with support from key investors like 9Yards Capital and SignalFire. Innovative Platform: The company offers the NodeZero platform, an autonomous pentesting SaaS solution that simulates adversarial attacks to identify and address security vulnerabilities in real time. Comprehensive Security Insights: NodeZero provides security teams with critical data on exploitable vulnerabilities, allowing them to visualize potential attack paths and effectively mitigate risks. Future Growth Plans: The new funds will be used to expand Horizon3.ai’s partner ecosystem, enhance product…