Recent Posts

Cyber (In)Securities – Issue 105

Contents: News Analysis Events News: Amazon confirms employee data breach after vendor hack https://www.bleepingcomputer.com/news/security/amazon-confirms-employee-data-breach-after-vendor-hack/ Amazon has confirmed that a data breach compromised employee information following a cyberattack on one of its third-party vendors. The breach exposed sensitive employee data, raising concerns about the security of 

Offensive AI Against Disinformation

Offensive AI Against Disinformation

This 100% entirely dead-serious (pinky promise) article proposes the use of artificial intelligence as a scalable, economic, and effective counter to disinformation.  

Meet our new member Jonathan K. Tullett

Meet our new member Jonathan K. Tullett

Please welcome our newest member from the UK, Jonathan K. Tullett Jonathan is a trading and systems expert with a focus on information security and risk management in the financial services sector. After beginning his career in systems and network engineering, Jonathan specialized in automated 

Cyber (In)Securities – Issue 104

Contents: News Trust in Focus [Monthly Supplement] Events News: 24% of CISOs Actively Looking to Leave Their Jobs https://www.csoonline.com/article/3595796/24-of-cisos-actively-looking-to-leave-their-jobs.html A recent survey reveals that 24% of Chief Information Security Officers (CISOs) are actively seeking new job opportunities, with many others contemplating leaving within three years 

Faking GitHub Commits – What Could Go Wrong?

Faking GitHub Commits – What Could Go Wrong?

Found: a tool creating dummy GitHub source code commits to help programmers game job evaluation mechanisms. This illustrates a deeper issue with how badly designed incentives can have serious security consequences.

Cyber (In)Securities – Issue 103

Contents: News Analysis Events News: DocuSign’s Envelopes API abused to send realistic fake invoices https://www.bleepingcomputer.com/news/security/docusigns-envelopes-api-abused-to-send-realistic-fake-invoices/ Cybercriminals are exploiting DocuSign’s Envelopes API to deliver highly convincing fake invoices, tricking recipients into clicking on malicious links. By abusing this legitimate API, attackers are able to create phishing 

Cyber (In)Securities – Issue 102

Contents: News Events News: LottieFiles hacked in supply chain attack to steal users’ crypto https://www.bleepingcomputer.com/news/security/lottiefiles-hacked-in-supply-chain-attack-to-steal-users-crypto/ LottieFiles, a platform for animated graphics, recently suffered a supply chain attack compromising its ‘lottie-player’ library versions 2.0.5 to 2.0.7. The attackers injected malicious code designed to steal cryptocurrency by 

Meet CyAN’s Africa Advisor – Inssata Ricourt

Meet CyAN’s Africa Advisor – Inssata Ricourt

As part of CyAN’s efforts to diversify and expand our network and geographic presence worldwide, we are delighted to announce that Inssata Ricourt will take on the role of CyAN’s Representative for Africa. An expert in cybersecurity and data protection, and a board member, Inssata 

CyAN Member Podcast – Interview Tips with Kim Chandler McDonald

CyAN Member Podcast – Interview Tips with Kim Chandler McDonald

Check out fellow member Kim Chandler McDonald on a podcast discussing her book,, “An Interviewer’s Guidebook: Turning Conversations into Captivating Stories

Welcome New Member – Saba Bagheri

Welcome New Member – Saba Bagheri

We’re thrilled to welcome back Dr. Saba Bagheri, PhD to CyAN! Dr. Saba Bagheri is a Senior Consultant in Cybersecurity for the Australian Government, with a PhD in organizational cyber resilience and extensive experience in cyber security research, threat intelligence, security operations, and risk management.