I had a blast at my first Black Hat! With more than 20,000 attendees, 400 booths, and an unfathomable amount of afterparties, Black Hat 2026 taught me…
Tag: Cyber Defense Magazine
Black Hat USA 2026: Field Report and Cybersecurity Findings
Cyber Defense Magazine Black Hat USA 2026 Las Vegas, Nevada | August 2–6, 2026 Executive Summary and Key Findings Black Hat USA 2026 provided a firsthand…
Security Theatre: Busy Metrics in the SOC are a Great Show, but Terrible Defense
Unfortunately, many security professionals still consider noisy SOC metrics the best benchmarks for performance. I call this “activity theater”—a lot of…
Closing Security Gaps Where Digital Meets Physical Access
Access management is the first step in any risk management strategy. Sophisticated threats have adapted to the familiar methods of heavy doors, physical…
Dystopian Warning from Renowned Cyber Threat Researcher
In the decade I spent working at cybersecurity giants like Fortinet and Check Point Software, I witnessed the industry evolve quite a bit – from the…
4 Steps for Making Sure Domain Impersonation Takedown Requests Don’t Get Rejected
Brand impersonation is one of the fastest growing threats facing organizations today. Bad actors create fake websites using an organization’s name, logos,…
7 Reasons Organizations Are Simplifying Endpoints To Improve Security
Endpoint security strategy is changing alongside the modern workspace itself. Employees now spend much of their time working through browsers, virtual…
Cyber Sovereignty Isn’t a Trend. It Is the New Operating Model for Digital Trust
Not long ago, data sovereignty was treated as a technical footnote. It was something handled quietly by compliance teams and revisited only when…
When Secure Communications Fail: Lessons From The German Military Interception
Cybersecurity discussions often focus on protecting networks, cloud environments, endpoints, and applications. These areas remain essential, but recent…
CISA Upgrades SBOM Standards
A Modern Blueprint for Software Transparency On July 29, 2026, CISA linked up with the NSA, FBI, and 15 international cybersecurity partners to drop new…
Who’s Actually in Charge of Your Cyber Incident Response?
When a cyber incident hits, most organizations discover something uncomfortable: the structure they assumed was in place doesn’t quite hold. Security is…
Over 30 Minnesota Water Utilities Disrupted in Coordinated Weekend Cyberattack
The Attack and Local Impact Over the weekend of July 26 and July 27, 2026, a coordinated cyberattack struck deep into local infrastructure, hitting…
Can LLMs Exploit the Critical Vulnerabilities They Find?
On April 7, 2026, Anthropic announced Project Glasswing, which would provide select organizations with early access to their new Claude Mythos Preview…
From Benchmark to Breach: Inside the First End-to-End Autonomous Cyberattack
Incident Overview On July 27, 2026, the Cloud Security Alliance (CSA) released its initial post-mortem detailing the first publicly documented end-to-end…
Beyond Deadlines: CMMC As A Continuous Enterprise Risk Governance Challenge
In the fall of 2024, the Department of Defense finalized one of the most consequential regulatory shifts to hit the defense industrial base in decades.…
Data Loss Risks During Microsoft 365 Migration and Ways to Prevent Them
Preventing Data Loss in Microsoft 365 Migration Migrations do not fail loudly. The project closes, the team moves on, and three weeks later, someone in…
From Benchmark to Breach: Inside the First End-to-End Autonomous Cyberattack
Incident Overview On July 27, 2026, the Cloud Security Alliance (CSA) released its initial post-mortem detailing the first publicly documented end-to-end…
The Real Battleground In Data Breach Cases Is Now The Court Of Appeals
Now more than ever, companies face an onslaught of cyberattacks and potential data breaches. While the core steps of incident response (containment,…
Federal Cyber Mandate: CISA Orders Urgent Patches for Fortinet and Arista Flaws
Federal Officials Sound Alarm Over Active Router Flaws On July 27, 2026, federal cybersecurity officials released an emergency alert after finding that…
Beyond Deadlines: CMMC As A Continuous Enterprise Risk Governance Challenge
In the fall of 2024, the Department of Defense finalized one of the most consequential regulatory shifts to hit the defense industrial base in decades.…