Limor Kessem, CISM, C|ISO

12.7K posts

Limor Kessem, CISM, C|ISO banner
Limor Kessem, CISM, C|ISO

Limor Kessem, CISM, C|ISO

@iCyberFighter

#Cybersecurity advisor #CyberCrisis, #CISO viewpoint, #ThreatIntel, champion diversity & women in tech. Polyglot. Mom. Opinions strictly my own.

Planet Cyber 가입일 Şubat 2012
1.9K 팔로잉4.1K 팔로워
Denis Laskov 🇮🇱
Denis Laskov 🇮🇱@it4sec·
You ever change a database schema late in the project? That’s not coding anymore. That’s just you quietly ruining your own life, one migration at a time.
English
1
0
7
863
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
[2/n] Instead, he secretly funneled private information such as how much insurance money victims had, to the notorious #ALPHV / #BlackCat hacker group. These tips allowed the attackers to demand much higher payments, leading to massive payouts from non-profits, hospitals...
English
1
0
0
48
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
[1/n] Today on the #WTF corner... a former #ransomware negotiator pleads guilty to betraying the very companies that hired him for help. Working for a professional recovery firm, he was supposed to help businesses minimize damage after cyberattacks.... #cybercrime
English
1
0
2
103
Limor Kessem, CISM, C|ISO 리트윗함
EFF
EFF@EFF·
For nearly 30 years, journalists have relied on the Internet Archive to see how stories were originally published, before edits, removals, or changes. We need to safeguard that. eff.org/deeplinks/2026…
English
29
682
2.2K
56.4K
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
New #phishing campaign tied to AI cloud-hosting service #Railway allowed attackers to gain access to hundreds of enterprise Microsoft cloud accounts - no password required! This is one insidious #IoT way that AI is used by #cybercrime brokers for a dangerous initial entry point.
English
1
0
0
57
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
The malware prompts an AI assistant to retrieve content from attackers' server/URLs, creating a proxy layer that masks the true comms channel. Doesn't require API keys or authentication, bypassing common enterprise countermeasures and takedown mechanisms...
English
1
0
0
28
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
AI assistants with web-browsing capabilities could serve as covert command-and-control infrastructure...
Limor Kessem, CISM, C|ISO tweet media
English
1
0
0
44
Limor Kessem, CISM, C|ISO 리트윗함
Nick VanGilder
Nick VanGilder@nickvangilder·
Historically, cybersecurity has never been a true entry-level field. Most people start in IT to learn how networks and systems work, then transition into security roles over time once they have a certain amount of foundational knowledge and experience. That said, many companies, colleges, and training institutions have a strong monetary incentive to present cybersecurity as entry-level. They make significant amounts of money selling bootcamps and certifications to people eager to break into the field. After completing these programs and earning a few credentials, many newcomers discover that employers are looking for things they still do not have, most commonly hands-on experience in IT or adjacent roles. This disconnect often leads to frustration and backlash toward employers, who are accused of setting unrealistic expectations for entry-level security jobs. In reality, though, the expectations themselves are not new. What _is_ new is the narrative that cybersecurity is supposed to be an easy or direct entry point into tech. True entry-level cybersecurity roles do exist, but they are not the norm for most roles. To me, being upfront and honest about that reality would save a lot of newcomers time, money, and frustration.
English
21
55
456
25.7K
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
[2/3] (which counts the Russian government among its clients). Prosecutors said for the first time that the exploits would have allowed the broker and its customers access to "millions of computers and devices around the world," including in the US, to conduct ransomware attacks
English
1
0
0
31
Limor Kessem, CISM, C|ISO
Limor Kessem, CISM, C|ISO@iCyberFighter·
[1/3 via @zackwhittaker] U.S. prosecutors are requesting nine years in prison for Peter Williams, aka "Doogie," the former head of #L3Harris' hacking tools maker #Trenchant, for stealing at least eight exploits from the company's systems and selling them to a Russian broker.
English
1
0
0
53