Tag

#incident-response

40 stories taggedincident-response · page 3 of 3.

A vast, empty government operations floor at night, rows of dark workstations faintly illuminated by the glow of inactive monitors, a long corridor of server ra
Policy & Regulation

Chris Inglis on the Snowden Era: What NSA Got Wrong, and What CISOs Should Still Be Asking

The former NSA Deputy Director reflects on institutional failures, insider threat detection, and why 'enculturation' may matter more than access controls.

2 min read
Illustration: A long dimly lit server room corridor with rows of rack-mounted hardware
Breaches

Twenty Years of Getting It Wrong: The Breaches and Blunders That Defined Modern Cybersecurity

From MGM's identity disaster to MOVEit's patch pile-up, the same failure modes keep appearing in postmortems. That's the problem.

2 min read
Illustration: a dimly lit network operations center at night
Opinion

The 2026 Vendor Survey Nobody Asked For, Except The Findings Actually Track

The Bitdefender Cybersecurity Assessment polled 1,200 practitioners and concluded awareness is up and resilience is flat. Anyone running production already knew that.

3 min read
Illustration: a dimly lit security operations center
Opinion

Why SOCs Still Can't Answer 'What Happened?' — The Case for Network Detection

Alert-driven triage keeps missing context. NDR proponents argue packet truth is the only ground truth left.

3 min read
Illustration: A server room with multiple network paths, digital overlays indicating cyber threats
Ransomware

Double Trouble: Two Unrelated Attacks Thrive on Unpatched SharePoint

Microsoft DART untangles dual intrusions on the same server, each attacker accidentally covering the other's tracks.

3 min read
Illustration: An empty modern supermarket aisle at night illuminated only by cold blue emergency
Ransomware

War Room Debrief: How a Fictional Grocery Chain Got Crushed by APT 64

A tabletop exercise at Infosecurity Europe put ransomware, AI poisoning, and deepfake CEO videos inside a simulated supermarket attack. The blue team held the line. The red team shorted the stock anyway.

3 min read
Illustration: a dark security operations center desk
Identity & Access

Behavioral AI Pitched as Triage Layer for Phishing and ATO Floods

A vendor webinar argues that pattern-learning models can cut investigation time on BEC and account takeover incidents. The harder question: what does that mean for breach-notification timelines?

3 min read
Illustration: an empty modern security operations center at night
Policy & Regulation

MDR's AI Reckoning: When the Old Service Model Stops Keeping Up

Managed detection and response solved a staffing problem. It is not, by itself, an answer to adversaries who automate reconnaissance and intrusion at machine speed.

3 min read
Illustration: A server room bathed in cool blue and amber light
AI Security

Twelve Controls That Actually Matter Once AI Ships to Production

Visibility into AI applications is a starting point, not a security posture. Here is what ongoing monitoring and defense of production AI systems looks like in practice.

3 min read
Illustration: A CISO facing a decision of whether to pay a ransom, with digital locks and keys symbolizing cybersecurity
Ransomware

More Than Half of CISOs Would Pay a Ransomware Demand. The Maths Are Not Flattering.

A survey of 750 CISOs in the US and UK finds 58% would hand over money to ransomware operators, despite law enforcement advice, incomplete decryption rates, and the lingering question of whether the data stays exclusive.

3 min read
© 2026 Threat Vectr