Topic
Perspectives

CTI Roundup: Q1 Exploit Trends, HijackLoader, & the State of Pentesting
Kaspersky reveals the top exploit and vulnerability trends for the first quarter of 2024, HijackLoader evolves with new evasion techniques, and Cobalt releases its 2024 State of Pentesting report.

As Federal Hiring Deadline Looms, Chief AI Officers Are in Demand. Here’s Where to Find Yours
Finding the right chief AI officer (CAIO) requires a blend of strategic foresight and creativity. The talent pool is small, but we’ve ID’d a few avenues to explore.

CTI Roundup: Cuttlefish Malware, Hackers Leverage Docker Hub
Cuttlefish malware targets SOHO routers, nation states and cybercriminals share compromised networks, and threat actors use Docker Hub to spread malware and phishing scams.

RSA 2024 Preview: C-Suite Lessons on Compliance and the SEC Cybersecurity Rule
In the final installment of our three-part series leading up to RSA Conference 2024, Jim Mirochnik of Halock Security Labs shares tips on establishing legal defensibility and clear lines of acceptable risk.

CTI Roundup: ToddyCat APT, GuptiMiner Malware, APT28 Exploits a Windows Print Spooler Flaw
ToddyCat deploys advanced tools for industrial scale data theft, hackers use eScan updates to spread GuptiMiner malware, and Russia’s APT28 exploits a Windows Print Spooler flaw.

Top 10 Takeaways from Tanium’s 2024 FedCyber Exchange
Event highlights from federal IT and cybersecurity leaders, experts, and partners.

RSA 2024 Preview: Applying Past Lessons for Intel-Driven Identity Threat Detection
In the second of our three-part RSA preview, Focal Point asks Cisco Talos’ Nicole Hoffman of about IAM–and an unusual book.

RSA 2024 Preview: How to Manage Vulnerabilities at Scale
In the first of our three-part sneak-peek at RSA Conference 2024, Focal Point sits down with Tanium’s Melissa Bischoping to discuss vulnerability management – the blunders, best practices, and tools that can help.

CTI Roundup: A Malicious Notepad++ Plugin, “Junk Gun” Ransomware, and a Google Malvertising Campaign
Researchers discover modified Notepad++ plug-in, new junk gun ransomware appears on cybercrime forums, and a malvertising campaign targets IT teams.

CISO Success Story: A Real-Life Marvel ‘Superhero’ on AI Fighting Cybercrime
With hackers weaponizing AI at an alarming rate, we asked former Marvel CISO Mike Wilkes how it can also be used to counter these threats.

Fight Fire With Fire: 3 Major Ways AI Fuels Your Cybersecurity Arsenal
With security threats rising beyond the capacity of human analysts, it’s time to harness the power and speed of AI to detect and contain cyberattacks.

CTI Roundup: LockBit Update, Earth Freybug Deploys UNAPIMON Malware
Law enforcement’s impact on LockBit, how unpatched vulnerabilities contribute to ransomware attacks, and Earth Freybug deploys UNAPIMON malware.