Intelligence desk
Identity
A permanent file of Security.io’s selected briefings tagged to this executive theme. It reflects the publication’s curated coverage, not a census of all global activity.
SonicWall SMA 1000 zero-days demand compromise checks, not patch-only closureVulnerability Management
CISA’s two-SOC test makes response authority a control requirementIncident Response
Expanded Mabna charges sharpen the research-espionage threat modelThreat Intelligence
Heights Finance breach exposes the risk outside core systemsThird-Party Risk
Jewelbug turns one shared webmail template into a national-scale footholdThreat Intelligence
Snowflake campaign guilty plea turns an old cloud-account failure into a verified legal recordThird-Party Risk
OpenAI–Hugging Face incident makes AI evaluation containment a privileged-system decisionAI Security
Cisco FMC zero-day requires hunting and secret rotation, not patching aloneVulnerability and Network Security
OWAReaper persistence survives credential rotation and endpoint rebuildingThreat Intelligence
CubePilot DNS hijack exposed trusted services behind valid certificatesSupply Chain and Infrastructure Security
Origin Energy says approximately 900,000 customers were affected by data incidentData Protection and Incident Response
Origin Energy says approximately 900,000 customers were affectedData Protection and Critical Services
Laundry Bear’s Zimbra campaign turns a viewed email into mailbox persistenceThreat Intelligence and Identity
Adobe extension flaw shows browser add-ons can bridge trusted SaaS sessionsEndpoint and SaaS Security
CISA gives exposed SharePoint farms three days as attackers pursue machine keysVulnerability and Exposure Management