Today's Headlines and the latest #cybernews from the desk of the #CISO:

Apple Hurries Patches for Safari Bugs Under Active Attack

SEO poisoning used to backdoor targets with malware

Scammers bypass Office 365 MFA in BEC attacks

Critical Entities Targeted in Suspected Chinese Cyber Spying

Story Links:

https://threatpost.com/apple-patch-safari-active-attack/166922/

https://www.bleepingcomputer.com/news/security/microsoft-seo-poisoning-used-to-backdoor-targets-with-malware/

https://www.bleepingcomputer.com/news/security/microsoft-scammers-bypass-office-365-mfa-in-bec-attacks/

https://www.securityweek.com/critical-entities-targeted-suspected-chinese-cyber-spying

“The Microsoft Doctrine” by James Azar now on Substack https://jamesazar.substack.com/p/the-microsoft-doctrine

CISOTalk Webinar Series: Closing the Gap Between Endpoints and Identity Protection with Carolyn Crandall and Joseph Salazar from Attivo Networks: Sign up here: https://us06web.zoom.us/webinar/register/WN_UNRepQ7mST-D8j46os228Q

The Practitioner Brief is sponsored by:

KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub

Whistic: www.whistic.com/cyberhub

Attivo Networks: www.attivonetworks.com


Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Tech Town Square, Other Side of Cyber and CISOs Secrets

James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/

James on Parler: @realjamesazar

Telegram: CyberHub Podcast


Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter


Website: https://www.cyberhubpodcast.com

Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw

Facebook: https://www.facebook.com/CyberHubpodcast/

Linkedin: https://www.linkedin.com/company/cyberhubpodcast/

Twitter: https://twitter.com/cyberhubpodcast

Instagram: https://www.instagram.com/cyberhubpodcast

Listen here: https://linktr.ee/cyberhubpodcast

The Hub of the Infosec Community.

Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.