Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Cloud Detections in an Age of Cloud Tools with Fred Wilmot

Fred Wilmot, CEO and Co-Founder of Detecteam, joined Defender Fridays to discuss the growing concerns surrounding identity management in cloud security, particularly with the rise of attacks on platforms like O365 and Azure. He emphasizes the importance of analyzing network traffic to understand identity behavior and the complexities introduced by encryption and third-party authentication. He also notes the ongoing evolution in cybersecurity practices and the potential benefits of standardization in logging and taxonomies.

What You Need to Know about the Coinbase Data Breach

Coinbase is a digital currency platform that allows consumers to transact using digital currencies, including Ethereum and Bitcoin. It is one of the most popular exchanges, with millions of users. The company’s initial vision is to bring efficiency and innovation to the global economy. Despite significant security measures to secure the wallet and transactions, there was a breach in late 2024. It began when hackers targeted an employee using bribery in exchange for insider knowledge.

Protecting Your Address: What to Do if Someone Is Using It Without Permission

Most people aren’t overly protective of their home address. They don’t give it to anyone who asks, but they also don’t find it too suspicious when an e-commerce website or application asks for the information. However, your home address is a crucial part of your financial identity. It is common for an online transaction to fail because the consumer inputs the wrong zip code or street number.

SSO isn't a complete solution for SaaS access management

This blog has been adapted from an excerpted section of 1Password’s ebook: Why SSO is not enough for identity security. To read the complete ebook and learn more about the issues that SSO can’t cover, click here. Sign-on (SSO) solutions are designed to manage and secure access to applications. By integrating with a company’s identity provider (IdP), SSO allows users to authenticate to multiple applications via a single log-in.

CrowdStrike Named a Frost Radar Leader in Cloud and Application Runtime Security

CrowdStrike has been named an innovation and growth Leader in the inaugural 2025 Frost Radar: Cloud and Application Runtime Security (CARS), positioned highest on the Innovation Index among all vendors evaluated. This marks another milestone in our mission to stop breaches with the industry's most unified and comprehensive cloud runtime protection.

Logistics Industry: Boosting Operational Efficiency with User Activity Monitoring (UAM)

The Logistics Industry is a true example of a distributed workforce that needs operational efficiency and clear visibility to achieve its goals. You have drivers on the road, operators working on a factory line to build, and your goal is to maintain operational excellence, safeguard data, and ensure regulatory compliance. This is no easy task without the right technology in place to help you.

Smarter Security Assessments: Automate, Customize, Scale

Discover how AI is transforming third-party risk management. In this update, Michelle from our Customer Success team walks through key improvements to AI-Assessments—from instant Security Profiles and smarter questionnaires to faster reporting and risk remediation. See what’s live, what’s coming next, and how your feedback is shaping the future of vendor risk. Interested in finding out more about UpGuard?

Comprehensive Guide to Implementing Asset Monitoring Solutions

Are you seeking support to avoid unexpected asset malfunctions? Companies utilize asset monitoring solutions to maintain equipment operations without disruptions while protecting against costly downtime periods and extending the life of important infrastructure. Here's the good news... These solutions implement more easily than anticipated but yield substantial advantages. Our guide demonstrates all necessary steps to establish an efficient asset monitoring system for your business.

Fullscreen BitM Attack Discovered by SquareX Exploits Browser Fullscreen APIs to Steal Credentials in Safari

Today, SquareX released new threat research on an advanced Browser-in-the-Middle (BitM) attack targeting Safari users. As highlighted by Mandiant, adversaries have been increasingly using BitM attacks to steal credentials and gain unauthorized access to enterprise SaaS apps. BitM attacks work by using a remote browser to trick victims into interacting with an attacker-controlled browser via a pop-up window in the victim's browser.

Protecting Government Agencies From Mobile Threats: A Guide

If you work for (or alongside) the United States government, then threat actors want your sensitive data. In 2023, federal agencies fell victim to 11 major cybersecurity incidents, with threats continuing to evolve well into 2024. Safeguarding federal and critical infrastructure organizations requires a modern cybersecurity framework. In today’s mobile-enabled workplaces, that means extending your data protection strategy to wherever devices are being used.