Editorial

Blog

In-house analysis and situation reports from the NEOSEC Intel newsroom. Deeper than Twitter, shorter than a whitepaper.

  • · NEOSEC Redaktion

    Cybersecurity Is Survival

    Howard Solomon's CSO Online piece says out loud what many in the industry think but rarely state plainly: any organization that still treats prevention as the centre of its security strategy is buying theatre. What that means for German entities under NIS2 — and why resilience on paper is worth nothing.

    nis2resilienzciso
    Read more
  • · NEOSEC Redaktion

    Iran Imports China's Playbook — The Barati Arrest and the Mabna Institute

    An Iranian national arrested in Montenegro, a 2018 US indictment thread reaching back to Tehran, 31 terabytes of stolen research data over eight years. Kim Zetter traces how Iran — around 2013, the same year Mandiant exposed China as APT-1 — appears to have imported an economic-espionage playbook from Beijing. What that means for German universities and research institutions.

    iranaptwirtschaftsspionage
    Read more
  • · NEOSEC Redaktion

    Google Ads as Malware Delivery: The MacSync Stealer Case

    A Google Ad impersonating Anthropic's Claude Code sends macOS users to a Google Sites page, delivers a Base64-obfuscated terminal command, and steals — in one motion — browser passwords, cloud tokens, and, if present, the seed phrase of a Ledger hardware wallet. Lucas Martin's CyberPress report walks through the six stages. What that means for German developers and their employers.

    malvertisingmacosstealer
    Read more
  • · NEOSEC Intel-Redaktion

    22,000 breaches – what they reveal about real incident preparedness

    The Verizon DBIR 2026 analyzes more than 22,000 confirmed security incidents across 145 countries. Three findings change the rules for European mid-market companies: vulnerability exploitation is now the leading attack vector, nearly half of all incidents originate at a third party, and AI-assisted attackers are closing the patch gap faster than ever.

    incident-responseransomwaresupply-chain
    Read more