CSO Online

CSO Online

Publication
1 followers

Publication for security executives focusing on cybersecurity management and risk.

For Cyber Risk Assessments, Frequency Is Essential
NewsJan 21, 2026

For Cyber Risk Assessments, Frequency Is Essential

Cyber risk assessments function like medical check‑ups, enabling organizations to detect vulnerabilities before attackers exploit them. The article highlights that regular assessments uncover data exposure—one in ten cloud data sets is openly accessible—and reveal that over 99% of compromised accounts...

By CSO Online
This Intune Update Isn’t Optional — It’s a Kill Switch for Outdated Apps
NewsJan 20, 2026

This Intune Update Isn’t Optional — It’s a Kill Switch for Outdated Apps

Microsoft Intune MAM will enforce a mandatory update by January 19, requiring all iOS‑wrapped, SDK‑integrated apps and the Android Company Portal to run the latest versions. Outdated apps—including Outlook and Teams—will be blocked from launching. Administrators must push the new SDK...

By CSO Online
7 Top Cybersecurity Projects for 2026
NewsJan 19, 2026

7 Top Cybersecurity Projects for 2026

The 2026 cybersecurity roadmap highlights seven priority projects for CISOs, ranging from AI‑aware identity and access management to advanced email protection, autonomous code‑vulnerability discovery, and enterprise‑wide zero‑trust adoption. Leaders emphasize extending IAM controls to non‑human agents, leveraging small language models...

By CSO Online
Google Vertex AI Security Permissions Could Amplify Insider Threats
NewsJan 16, 2026

Google Vertex AI Security Permissions Could Amplify Insider Threats

XM Cyber uncovered two privilege‑escalation flaws in Google Vertex AI where default configurations let a low‑privileged "Viewer" user hijack high‑privilege service‑agent identities. Google responded that the behavior is "working as intended," echoing similar stances from other cloud providers. The issue...

By CSO Online
From Typos to Takeovers: Inside the Industrialization of Npm Supply Chain Attacks
NewsJan 15, 2026

From Typos to Takeovers: Inside the Industrialization of Npm Supply Chain Attacks

The npm ecosystem has moved from simple typosquatting to coordinated credential‑driven attacks that compromise maintainers and CI/CD pipelines. Attackers now hijack trusted packages, inject malicious post‑install scripts, and use stolen tokens as a "master key" to reach millions of downstream...

By CSO Online
Iran’s Partial Internet Shutdown May Be a Windfall for Cybersecurity Intel
NewsJan 14, 2026

Iran’s Partial Internet Shutdown May Be a Windfall for Cybersecurity Intel

Iran’s near‑total internet blackout, begun Jan 8, has stripped millions of residential users offline, leaving only government‑controlled networks visible. Cybersecurity analysts say this creates a rare window to fingerprint Iranian state‑linked IPs and map their digital infrastructure. Vendors like Whisper Security...

By CSO Online
SpyCloud Launches Supply Chain Solution to Combat Rising Third-Party Identity Threats
NewsJan 14, 2026

SpyCloud Launches Supply Chain Solution to Combat Rising Third-Party Identity Threats

SpyCloud unveiled its Supply Chain Threat Protection solution, extending identity‑threat visibility to vendors and other third‑party partners. The platform draws on billions of recaptured breach, malware, phishing and dark‑web data points to deliver real‑time evidence of compromised credentials. It introduces...

By CSO Online
Cybersecurity at the State and Local Level: Washington Has the Framework, It’s Time to Act
NewsJan 14, 2026

Cybersecurity at the State and Local Level: Washington Has the Framework, It’s Time to Act

The March 2025 White House Executive Order calls on states, localities and tribal entities to own their cybersecurity preparedness, while the State and Local Cybersecurity Grant Program (SLCGP) allocates $1 billion over four years to fund those efforts. The bipartisan PILLAR...

By CSO Online
US Cybersecurity Weakened by Congressional Delays Despite Plankey Renomination
NewsJan 14, 2026

US Cybersecurity Weakened by Congressional Delays Despite Plankey Renomination

The White House renominated seasoned cyber veteran Sean Plankey as CISA director after his initial nomination lapsed, but Senate holds tied to a Coast Guard issue and a pending telecom security report are delaying confirmation. Simultaneously, deep budget cuts have...

By CSO Online
For Application Security: SCA, SAST, DAST and MAST. What Next?
NewsJan 13, 2026

For Application Security: SCA, SAST, DAST and MAST. What Next?

Application security is moving beyond isolated scanners toward a unified posture, provenance, and proof framework. Gartner and OWASP now emphasize Application Security Posture Management (ASPM) that aggregates SAST, DAST, SCA, MAST and IaC findings into a single, context‑aware view. Provenance...

By CSO Online
Top 10 Vendors for AI-Enabled Security — According to CISOs
NewsJan 13, 2026

Top 10 Vendors for AI-Enabled Security — According to CISOs

The CSO 2025 Security Priorities Study reveals that senior security executives continue to favor established, name‑brand vendors for AI‑enabled security solutions despite a flood of AI‑only startups. Cisco and Microsoft lead the list, with reputation, breach history, and integration ease...

By CSO Online
Iran-Linked MuddyWater APT Deploys Rust-Based Implant in Latest Campaign
NewsJan 12, 2026

Iran-Linked MuddyWater APT Deploys Rust-Based Implant in Latest Campaign

Iran‑linked APT MuddyWater has launched a new espionage campaign using a Rust‑based implant named RustyWater. The group delivered the malware through spear‑phishing emails that contain ZIP archives with decoy PDFs and executable files masquerading as PDFs. RustyWater replaces the group’s...

By CSO Online
Cybersecurity at the Edge: Securing Rugged IoT in Mission-Critical Environments
NewsJan 8, 2026

Cybersecurity at the Edge: Securing Rugged IoT in Mission-Critical Environments

Edge computing is now integral to defense, utilities and public safety, relying on rugged IoT devices that operate in extreme, disconnected environments. These deployments break traditional cybersecurity assumptions such as continuous connectivity and frequent patching, exposing critical infrastructure to heightened...

By CSO Online
Holes in Veeam Backup Suite Allow Remote Code Execution, Creation of Malicious Backup Config Files
NewsJan 8, 2026

Holes in Veeam Backup Suite Allow Remote Code Execution, Creation of Malicious Backup Config Files

Veeam disclosed four vulnerabilities in its Backup & Replication suite that let users with Backup Admin, Backup Operator or Tape Operator roles execute remote code or write files as root. The most severe flaw, CVE‑2025‑59470, carries a CVSS score of...

By CSO Online
Critical RCE Flaw Allows Full Takeover of N8n AI Workflow Platform
NewsJan 7, 2026

Critical RCE Flaw Allows Full Takeover of N8n AI Workflow Platform

Researchers disclosed a critical unauthenticated remote code execution flaw (CVE‑2026‑21858) in the n8n workflow automation platform. The vulnerability stems from improper Content‑Type validation in the formWebhook function, enabling arbitrary file reads, path traversal, and full system takeover. By stealing configuration...

By CSO Online
How to Eliminate IT Blind Spots in the Modern, AI-Driven Enterprise
NewsJan 7, 2026

How to Eliminate IT Blind Spots in the Modern, AI-Driven Enterprise

Enterprises that rely heavily on AI and multi‑cloud environments are confronting new security blind spots that stem from dynamic agent behavior, data‑poisoning, and mis‑configurations. Experts advise CSOs to shift from reactive defenses to unified visibility that normalizes telemetry across AI...

By CSO Online
Microsoft Warns of a Surge in Phishing Attacks Exploiting Email Routing Gaps
NewsJan 7, 2026

Microsoft Warns of a Surge in Phishing Attacks Exploiting Email Routing Gaps

Microsoft’s Threat Intelligence team reports a sharp rise in phishing campaigns that exploit complex email routing and misconfigured MX, DMARC, and SPF settings. Attackers use these gaps to make malicious messages appear as internal communications, often leveraging phishing‑as‑a‑service platforms such...

By CSO Online
8 Things CISOs Can’t Afford to Get Wrong in 2026
NewsJan 7, 2026

8 Things CISOs Can’t Afford to Get Wrong in 2026

CISOs face a rapidly evolving threat landscape in 2026, from AI‑driven identity attacks and complex supply‑chain vulnerabilities to heightened geopolitical cyber aggression. Missteps in AI agent governance, cloud security, and compliance can trigger costly breaches, while human error continues to...

By CSO Online
Open WebUI Bug Turns the ‘Free Model’ Into an Enterprise Backdoor
NewsJan 6, 2026

Open WebUI Bug Turns the ‘Free Model’ Into an Enterprise Backdoor

Security researchers have uncovered a high‑severity vulnerability (CVE‑2025‑64496) in Open WebUI, a self‑hosted interface for large language models. The flaw resides in the Direct Connections feature, where unsafe handling of server‑sent events lets a malicious model server inject JavaScript that...

By CSO Online
6 Strategies for Building a High-Performance Cybersecurity Team
NewsJan 6, 2026

6 Strategies for Building a High-Performance Cybersecurity Team

Veteran security leaders outline six strategies to transform cybersecurity groups from collections of high‑performing individuals into cohesive, high‑performing teams. The approach emphasizes hiring a blend of ambitious innovators and reliable "rock stars," while also seeking diverse backgrounds for broader perspective....

By CSO Online
Why Arbor Edge Defense and CDN-Based DDoS Protection Are Better Together
NewsJan 5, 2026

Why Arbor Edge Defense and CDN-Based DDoS Protection Are Better Together

Arbor Edge Defense (AED) complements CDN‑based DDoS mitigation by providing inline, on‑premises protection against low‑volume, application‑layer and state‑exhaustion attacks that cloud scrubbing services often miss. AED leverages AI/ML and NETSCOUT’s ATLAS threat intelligence, which monitors roughly half of global internet...

By CSO Online
Why Cybersecurity Needs to Focus More on Investigation and Less on Just Detection and Response
NewsJan 5, 2026

Why Cybersecurity Needs to Focus More on Investigation and Less on Just Detection and Response

Cybersecurity strategies prioritize detection and response, but over‑reliance limits long‑term protection. The article argues that investigative analysis—examining packet‑level data, attack vectors, and root causes—provides essential insights to prevent repeat incidents. Advanced threats like APTs and zero‑days often evade detection, making...

By CSO Online
5 Myths About DDoS Attacks and Protection
NewsJan 5, 2026

5 Myths About DDoS Attacks and Protection

The article debunks five common DDoS myths, highlighting that attacks are far more frequent and diverse than many believe. NETSCOUT’s ASERT team recorded over 15 million DDoS incidents in 2024, with a 43 % rise in sub‑gigabit, application‑layer assaults. It explains why...

By CSO Online
Stress Caused by Cybersecurity Threats Is Taking Its Toll
NewsJan 5, 2026

Stress Caused by Cybersecurity Threats Is Taking Its Toll

Cyber threats are increasingly complex, sparking a mental‑health crisis among IT and security teams. A recent Object First survey of 500 professionals found 84% feel uncomfortably stressed and 78% fear personal blame for breaches. Nearly 60% are actively looking for...

By CSO Online