CSec Weekly
Archive
Subscribe
Search
Log In
CSec Weekly
Eyal Estrin

✍ Author of Cloud Security Handbook & Security for Cloud Native Applications ☁ AWS Β· Azure Β· GCP πŸ’­ All opinions are my own 🌐


Jun 16, 2026

byEyal Estrin

Major ERP Threat Puts Corporate Databases At Risk

Vulnerable internal tools and hyper realistic impersonation tactics show that organizational resilience must focus on human and core data defenses.

Major ERP Threat Puts Corporate Databases At Risk

Jun 9, 2026

byEyal Estrin

Identity Perimeter Risk Mounts Following Vault Breaches

The rapid scaling of intelligent threat vectors and newly exposed legacy software flaws put intense pressure on corporate patching lifecycles.

Identity Perimeter Risk Mounts Following Vault Breaches

Jun 2, 2026

byEyal Estrin

The Rise of In Person Office Support Impersonation

Modern operational security needs shifting away from perimeter defenses to handle complex platform integrations and automated vulnerability discovery.

The Rise of In Person Office Support Impersonation

May 26, 2026

byEyal Estrin

Developer workstations are now the top supply chain target

Enterprise risk management demands stronger supplier validation as critical administrative keys leak and infrastructure tracking scales up.

Developer workstations are now the top supply chain target

May 19, 2026

byEyal Estrin

Bank leaks customer data to unauthorized AI tool

Corporate liability spikes as regulators penalize unauthorized data monetization while hackers compromise critical dev tools and factory systems.

Bank leaks customer data to unauthorized AI tool

May 12, 2026

byEyal Estrin

Critical Unpatched Kernel Flaw Grants Full Root Access

From high speed rail hacks to major retail breaches the threat to critical systems and personal records continues to scale across the globe

Critical Unpatched Kernel Flaw Grants Full Root Access

May 5, 2026

byEyal Estrin

The CISO Shortage Impact

Leaders must prioritize risk reviews that address evolving threats like supply chain infiltration and the rapid spread of untrained AI use

The CISO Shortage Impact

Apr 28, 2026

byEyal Estrin

Undetectable Malware Claims Victory Over Core Gateways

Malicious code in development libraries and advanced autonomous threats are forcing a total rethink of how we protect internal cloud systems

Undetectable Malware Claims Victory Over Core Gateways

Apr 21, 2026

byEyal Estrin

Why AI security requires a stronger identity foundation

Global security incidents impacting millions of people highlight the urgent need for better response plans and stronger data protection measures

Why AI security requires a stronger identity foundation

Apr 14, 2026

byEyal Estrin

The Third-Party SaaS Supply Chain Threat

Identity governance gaps grow as AI agents increase and third-party software breaches disrupt critical health and cultural infrastructure worldwide

The Third-Party SaaS Supply Chain Threat

Apr 7, 2026

byEyal Estrin

Source Code Stolen in Dev Environment Breach

Critical data leaks at major brands and a full AI code tool exposure reinforce the need for stronger oversight of external vendors and dev tools

Source Code Stolen in Dev Environment Breach

Mar 31, 2026

byEyal Estrin

European Commission Confirms AWS Cloud Breach

Navigate the impact of hardware import bans and divergent encryption standards while managing vendor transparency and the rise of shadow AI tools

European Commission Confirms AWS Cloud Breach

Mar 24, 2026

byEyal Estrin

Meta AI Agent Triggers Major Unauthorized Security Event

Global authorities disrupt massive botnets while the Pentagon eyes AI training on secret data and UK infrastructure faces relentless attacks

Meta AI Agent Triggers Major Unauthorized Security Event

Mar 17, 2026

byEyal Estrin

The harsh reality of AI vulnerabilities for CISOs

Master new AI defense strategies and secure Salesforce guest settings to prevent the cloud abuse seen in the Telus and Stryker breaches

The harsh reality of AI vulnerabilities for CISOs

Mar 10, 2026

byEyal Estrin

Urgent Patch Required for Cisco Catalyst SD WAN Flaws

Major data breaches at LexisNexis and Star Citizen join urgent VMware warnings as global law enforcement disrupts a key phishing infrastructure hub

Urgent Patch Required for Cisco Catalyst SD WAN Flaws

Mar 3, 2026

byEyal Estrin

US History Largest Breach Risk

Microsoft confirms Copilot email bugs as rogue AI activity and agentic threats push the annual cost of insider risk to nearly 20 million dollars

US History Largest Breach Risk

Feb 24, 2026

byEyal Estrin

The CISO Guide to Enforcing Business Accountability

Identity vishing and infrastructure risk take center stage as luxury brands pay millions for SaaS breaches and the EU halts internal AI use

The CISO Guide to Enforcing Business Accountability

Feb 17, 2026

byEyal Estrin

Ten Major Mistakes That Can End a CISO Career

Fintech and social media breaches highlight a year of supply chain chaos where meeting industry standards is no longer a shield against attacks

Ten Major Mistakes That Can End a CISO Career

Feb 10, 2026

byEyal Estrin

Protecting your firm from autonomous AI threats in 2026

Global threats rise as billions of records leaks and companies struggle to secure AI tools and privileged user accounts

Protecting your firm from autonomous AI threats in 2026

Feb 4, 2026

byEyal Estrin

SolarWinds Critical RCE Flaws Demand Immediate Patching

New data shows soaring GDPR reports, rampant unsanctioned AI tools in use and access gaps for former staff as agencies warn about AI risk

SolarWinds Critical RCE Flaws Demand Immediate Patching

Jan 27, 2026

byEyal Estrin

AI Adoption Creates Huge Cyber Risk Gaps

Supply chain risk rules move forward in Europe while security teams digest ransomware backdoor lessons and phishing threats in energy

AI Adoption Creates Huge Cyber Risk Gaps

Jan 20, 2026

byEyal Estrin

CISOs Shift Focus to Keeping Business Running

Breaking cybercrime nodes and growing AI platform risk show how fraud and source code theft are reshaping security priorities for teams and boards

CISOs Shift Focus to Keeping Business Running

Jan 13, 2026

byEyal Estrin

Security Leaders Must Own AI Agent Identity Risk

Data theft attempts on cloud sharing sites and rising AI risks show why identity verification and compliance focus are top priorities for security teams

Security Leaders Must Own AI Agent Identity Risk

Jan 6, 2026

byEyal Estrin

AI Misuse and Emerging Attack Techniques in 2025

High impact breaches and evolving AI threat landscape underscore need for leadership strategy and hybrid risk frameworks

AI Misuse and Emerging Attack Techniques in 2025

Dec 30, 2025

byEyal Estrin

OWASP Top 10 Brings Clarity to AI Agent Risks

Security leaders face AI agent risk's identity threats and hard lessons from real scenes into ransomware and maritime malware

OWASP Top 10 Brings Clarity to AI Agent Risks
Load more posts
arrow-right

CSec Weekly

The Cyber Security News That Matter to Leaders


Quick Links

Subscription

Search

Β© 2026 CSec Weekly by SmartClouds.ai.
beehiivPowered by beehiiv