Cyber This Week Edition 109 — Access Expands. Accountability Must Keep Pace

Cybersecurity intelligence. Every Sunday.

We cut through the noise so you can stay informed, ahead of threats, and ready to act.

  • Edition
    #109
  • Published
  • Articles
    10
Latest Edition
View all articles
Dark Reading

MFA Won't Save You from OAuth Consent Abuse

MFA does not prevent users from authorising malicious or excessively privileged OAuth applications through legitimate consent screens. Such permissions can provide persistent API-based access to email, files, cloud environments, and business applications without stealing passwords or deploying malware. Organisations should restrict user consent, enforce least-privilege scopes, require admin approval for high-risk applications, monitor grants, and revoke suspicious tokens quickly.

Cybersecurity Dive

Manufacturers Make Patching Progress, but Identity Management Still Major Weakness

Black Kite research finds that manufacturers have improved patching but remain exposed through identity, credential, remote-access, and configuration weaknesses. The findings highlight the need to combine patching with stronger IAM, exposed-service reduction, credential protection, and supplier-risk controls.

The Wall Street Journal

Europe’s Most Valuable Startup Gave Data to a Scammer. Now It Faces a Shakedown.

The article reports that Revolut disclosed customer data to a person allegedly impersonating a government agency, followed by an extortion demand. The incident shows that sensitive-data exposure can result from social engineering and weak verification, not only technical compromise. Stronger authentication of official requests, dual approval, data minimisation, and audit trails are important safeguards.

Browse by Topic
Why Cyber This Week
  • Curated, not collected.

    We handpick 10 must-read stories from trusted sources.

  • Save time. Stay informed.

    Get the week's most important insights in minutes.

  • Built for security leaders.

    Strategic insights for professionals who make an impact.

Previous Editions

Catch up on earlier weekly briefings and track how cybersecurity themes are evolving over time.

View all editions
Edition#108·

AI Agents Expand Autonomy. Control Must Scale Faster.

Cyber This Week Edition 108 explores autonomous AI agents, machine identities, identity hijacking, insider risk, vulnerability bottlenecks, security fundamentals, agentic AI governance, cyber recovery, quantum resilience, and CISO readiness.

Read edition 10 articles
Edition#107·

AI Breaks Boundaries. Leadership Must Regain Control.

Cyber This Week Edition 107 explores autonomous AI agents, automated attacks, Zero Trust, cyber warfare, AI trust, cyber insurance, Digital India, human decision-making, resilience, and supply-chain risk.

Read edition 10 articles
Edition#106·

Fragmented Security Slows Response. Integrated Resilience Builds Trust.

Cyber This Week Edition 106 explores rapid incident response, fragmented security strategy, agentic SOCs, OT and data convergence, exposure management, phishing-as-a-service, ransomware, red-team lessons, affordability, and customer trust.

Read edition 10 articles