
Sign up to save your podcasts
Or


Software supply chain risk takes center stage in today's CXO Daily Cybersecurity Intelligence Brief as attackers again target the software development lifecycle through CI/CD integrations and enterprise build systems. This episode examines the reported compromise of the Checkmarx Jenkins Application Security Testing Plugin by TeamPCP, following the KICS supply chain attack, and what it signals for CISOs managing third-party code, credential governance, and continuous validation across development pipelines. We also cover Cushman & Wakefield's reported data breach affecting more than 310,000 accounts, highlighting the growing business risk tied to identity stores, access control maturity, breach notification, and downstream exposure for enterprise partners. In mobile security, the resurgence of the TrickMo Android banking trojan shows how attackers are using decentralized infrastructure, including the TON network, to strengthen command-and-control resilience and complicate takedown efforts. The briefing also tracks compromised Microsoft Teams accounts spreading ModeloRAT malware, escalating Canvas breach pressure from ShinyHunters, OpenAI's launch of a dedicated AI Security Platform, and Okta's warning that AI adoption in Asia Pacific is outpacing identity controls. Stay informed on the latest cybersecurity threats, cyber risk trends, and leadership implications shaping enterprise resilience.
By ISMG Content Intelligence & AI InnovationSoftware supply chain risk takes center stage in today's CXO Daily Cybersecurity Intelligence Brief as attackers again target the software development lifecycle through CI/CD integrations and enterprise build systems. This episode examines the reported compromise of the Checkmarx Jenkins Application Security Testing Plugin by TeamPCP, following the KICS supply chain attack, and what it signals for CISOs managing third-party code, credential governance, and continuous validation across development pipelines. We also cover Cushman & Wakefield's reported data breach affecting more than 310,000 accounts, highlighting the growing business risk tied to identity stores, access control maturity, breach notification, and downstream exposure for enterprise partners. In mobile security, the resurgence of the TrickMo Android banking trojan shows how attackers are using decentralized infrastructure, including the TON network, to strengthen command-and-control resilience and complicate takedown efforts. The briefing also tracks compromised Microsoft Teams accounts spreading ModeloRAT malware, escalating Canvas breach pressure from ShinyHunters, OpenAI's launch of a dedicated AI Security Platform, and Okta's warning that AI adoption in Asia Pacific is outpacing identity controls. Stay informed on the latest cybersecurity threats, cyber risk trends, and leadership implications shaping enterprise resilience.