Featured
NIST Declares “Inbox Zero,” Pulls Back on CVE Enrichment. Now Enterprise Security Teams Must Fill the Gap
An analysis of the National Vulnerability Database's shift to risk-based triage and what it actually means for the people patching systems (first of a two-part analysis)
Vercel Breach Raises Supply-Chain Risk: What Security Teams Must Do Now
Vercel confirmed unauthorized access to internal systems and is investigating with incident response support, and despite limited details, security teams should assume credential exposure and act immediately.
CYBR.HAK.CAST Episode 12: Fergus Hay of The Hacking Games
Phil Wylie and Michael Farnum talk with Fergus Hay about how the cybersecurity industry is missing a huge opportunity by overlooking gamers and young, neurodiverse problem-solvers who already have the mindset to become the next generation of ethical hackers.
CYBR.SEC.CAST Episode 66: Wendy Nather
In CYBR.SEC.CAST Episode 66, Wendy Nather explains why cybersecurity’s biggest lessons aren’t coming from breaches, but from the near-misses no one talks about.
CYBR.HAK.CAST Episode 11: Theresa Lanowitz
As AI accelerates development and expands the attack surface, organizations are waking up to a harsh reality: the software supply chain is now their most fragile and least understood security risk.
CYBR.SEC.CAST Episode 65: ICIT's Valerie Moon
The ICIT executive director discusses the importance of government internships, training programs, and public-sector experience in developing cybersecurity professionals.