On Sunday, July 20, Microsoft Corp. issued an emergency security update for a vulnerability in SharePoint Server that is actively being exploited to compromise vulnerable organizations. The patch comes amid reports that malicious hackers have used th
Blog (944)
Seems like an old system system that predates any care about security:
The flaw has to do with the protocol used in a train system known as the End-of-Train and Head-of-Train. A Flashing Rear End Device (FRED), also known as an End-of-Train (EOT) de
We are excited to invite you to the CISO Cocktail Reception if you are there at the BlackHat USA, Las Vegas 2025. This event is organized by EC-Council with CISOPlatform and FireCompass as proud community partners.
Please note that this event is exc
It started in a rugby box.
There I was, watching the match from a VIP suite—surrounded by a handful of other cybersecurity leaders. The beers were cold, the banter flowing, but one comment cut through the noise:
“Cybersecurity’s no longer about tech
CISOPlatform Breach Intelligence July 27, 2025 – Major Insurance & Dating App Breaches
Report Date: July 27, 2025 Coverage Period: July 26, 2025 Classification: Executive Intelligence BriefExecutive Summary
July 26, 2025 witnessed significant cybersecu
CISOPlatform Breach Intelligence July 26, 2025 – Critical SharePoint Zero-Day, VMware Espionage Campaign, Mitel Authentication Bypass
Executive Summary
The cybersecurity threat landscape on July 25, 2025 revealed 4 significant security incidents across
CISOPlatform Breach Intelligence July 25, 2025 – SharePoint Zero-Day Exploitation & Aviation BEC Attacks
Report Date: July 25, 2025
Coverage Period: July 24, 2025
Classification: Confidential - Executive Distribution
Executive Summary
July 24, 2025 wit
As healthcare will become increasingly digitized, the upward push of connected clinical devices—normally called the Internet of Medical Things (IoMT)—is revolutionizing patient care. From wearable glucose monitors and pacemakers to smart infusion pum
I am honored to be selected as the Thinkers360 Ambassador for Cybersecurity!
Congratulations to all the annual selectees, representing their fields of expertise!
Special call-out to my longtime colleagues:
Chuck Brooks – Security
Ingrid Vasiliu-Feltes –
Setting the Scene: The Rising Stakes in Cybersecurity
The cyber threat landscape isn’t just expanding—it’s convulsing. Ransomware, state-sponsored hacks, and zero-day exploits are wreaking havoc faster than organizations can respond. Yet, the workforc
UK shows leadership in a proposal to ban ransomware payments for public entities like healthcare, education, government services and other national critical infrastructure! This is a great step forward to undermine all ransomware attacks.
Such a strat
Microsoft today released updates to fix at least 137 security vulnerabilities in its Windows operating systems and supported software. None of the weaknesses addressed this month are known to be actively exploited, but 14 of the flaws earned Microsof
Building Real World Zero Trust
In cybersecurity’s early days, we built defenses like medieval castles big walls (firewalls), a drawbridge (VPNs), and guards at the gates (passwords). Once someone was inside, they could roam freely. But today’s world
CISOPlatform Breach Intelligence July 24, 2025 – SharePoint Zero-Day Exploits, SysAid Vulnerabilities, Aviation Phishing Campaign
Executive Summary
The cybersecurity threat landscape on July 23, 2025, revealed multiple critical security incidents acros
CISOPlatform Breach Intelligence July 23, 2025 – Critical SharePoint Zero-Day Exploitation, Dell Breach by World Leaks, Interlock Ransomware Advisory
Executive Summary
The cybersecurity threat landscape on July 22, 2025 revealed multiple critical secur
Lately, a lot of people have been asking me about what “triggers” threat modeling. The question confused me: you think about threats as part of any design decision! There are lots and lots of design decisions, ranging from tiny to enormous. For each,
Mass Cryptojacking Campaign Targeting 3,500+ Websites
Source: TheHackerNews

• July 21, 2025: Security researchers discover widespread JavaScript-based cryptomining ca
Microsoft SharePoint Zero-Day Exploitation Campaign (CVE-2025-53770, CVE-2025-53771)
Source: TheHackerNews, Dark Reading, CSO Magazine, Krebs on Security

• July 18, 2025 (6:00 PM CET): Active exploitation begins
• July 20, 2025: CISA adds C
CISO Platform
A global community of 5K+ Senior IT Security executives and 40K+ subscribers with the vision of meaningful collaboration, knowledge, and intelligence sharing to fight the growing cyber security threats.
Join CISO Community Share Your Knowledge (Post A Blog)
The Insider Risk Summit (West)
- Description:
- Created by: pritha
- Tags: insider risk summit, monterey, california
CISO Cocktail Reception, San Francisco
- Description:
Are you @RSAC?
CISO Yacht Cocktail Dinner
Going to RSA Conference?
After a day of attending sessions at RSA, join us on a luxury yacht for drinks, food, and live entertainment while enjoying the stunning skyline views, cruising on San Francisco Bay.
Yacht Party…
- Created by: pritha
- Tags: san francisco, rsac, rsac2026, ciso, cocktail, yacht, invite-only
