<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>CYGNVS Insights</title>
    <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights</link>
    <description>Insights from the Leader in Cyber Incident Response Platforms</description>
    <language>en</language>
    <pubDate>Tue, 03 Mar 2026 17:55:23 GMT</pubDate>
    <dc:date>2026-03-03T17:55:23Z</dc:date>
    <dc:language>en</dc:language>
    <item>
      <title>Why Cybersecurity Incident Response Management Starts with Out-of-Band</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/why-cybersecurity-incident-response-management-starts-with-out-of-band</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/why-cybersecurity-incident-response-management-starts-with-out-of-band" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/GARTNER-CIRM-OOB.png" alt="Executives and Cybersecurity Incident Response Management GARTNER" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;strong&gt;Key Takeaways&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/why-cybersecurity-incident-response-management-starts-with-out-of-band" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/GARTNER-CIRM-OOB.png" alt="Executives and Cybersecurity Incident Response Management GARTNER" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;strong&gt;Key Takeaways&lt;/strong&gt;&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fwhy-cybersecurity-incident-response-management-starts-with-out-of-band&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Industry Trends &amp; Insights</category>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Tue, 03 Mar 2026 17:55:23 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/why-cybersecurity-incident-response-management-starts-with-out-of-band</guid>
      <dc:date>2026-03-03T17:55:23Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Are Your Tabletop Exercises Building Resilience or Just Checking a Box?</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/tabletop-exercises-readiness-not-checkbox/</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/tabletop-exercises-readiness-not-checkbox/" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/2025-10%20Blog%20--TTX%20Checking%20Box%20(1).png" alt="Are Your Tabletop Exercises Building Resilience or Just Checking a Box?" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt;   
&lt;p&gt;Many organizations run tabletop exercises to meet a requirement, not to build capability. When they’re treated like a compliance exercise, tabletops become routine and predictable. The real goal isn’t to prove you &lt;em&gt;can &lt;/em&gt;respond; it’s to expose where you can’t - yet.&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/tabletop-exercises-readiness-not-checkbox/" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/2025-10%20Blog%20--TTX%20Checking%20Box%20(1).png" alt="Are Your Tabletop Exercises Building Resilience or Just Checking a Box?" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt;   
&lt;p&gt;Many organizations run tabletop exercises to meet a requirement, not to build capability. When they’re treated like a compliance exercise, tabletops become routine and predictable. The real goal isn’t to prove you &lt;em&gt;can &lt;/em&gt;respond; it’s to expose where you can’t - yet.&lt;/p&gt;    
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Ftabletop-exercises-readiness-not-checkbox%2F&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Wed, 29 Oct 2025 09:15:00 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/tabletop-exercises-readiness-not-checkbox/</guid>
      <dc:date>2025-10-29T09:15:00Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Cyber Incident Response Management: 10 Tactics for Cyber Resiliency</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-incident-response-management-10-tactics-for-cyber-resiliency</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-incident-response-management-10-tactics-for-cyber-resiliency" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/2025-10%20Blog%20-%20Cyber_Incident-Response-Management-Tactics.png" alt="cyber ncident response tactics vs ransomware" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;Ransomware is a business continuity problem first and a technical problem second. You win the first 24 hours by activating an &lt;/span&gt;&lt;strong&gt;&lt;span&gt;out-of-band command center &lt;/span&gt;&lt;/strong&gt;&lt;span&gt;to manage the incident, prioritizing the processes that make money or keep people safe, and communicating clearly with executives, customers, and regulators. You prepare that outcome now—&lt;/span&gt;&lt;i&gt;&lt;span&gt;before &lt;/span&gt;&lt;/i&gt;&lt;span&gt;the incident. &lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-incident-response-management-10-tactics-for-cyber-resiliency" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/2025-10%20Blog%20-%20Cyber_Incident-Response-Management-Tactics.png" alt="cyber ncident response tactics vs ransomware" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;Ransomware is a business continuity problem first and a technical problem second. You win the first 24 hours by activating an &lt;/span&gt;&lt;strong&gt;&lt;span&gt;out-of-band command center &lt;/span&gt;&lt;/strong&gt;&lt;span&gt;to manage the incident, prioritizing the processes that make money or keep people safe, and communicating clearly with executives, customers, and regulators. You prepare that outcome now—&lt;/span&gt;&lt;i&gt;&lt;span&gt;before &lt;/span&gt;&lt;/i&gt;&lt;span&gt;the incident. &lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fcyber-incident-response-management-10-tactics-for-cyber-resiliency&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <pubDate>Thu, 23 Oct 2025 11:15:00 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-incident-response-management-10-tactics-for-cyber-resiliency</guid>
      <dc:date>2025-10-23T11:15:00Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Out-of-Band Crisis Communications: How To Coordinate When Your Systems Are Compromised</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/out-of-band-crisis-communications-how-to-coordinate-when-your-systems-are-compromised</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/out-of-band-crisis-communications-how-to-coordinate-when-your-systems-are-compromised" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/out-of-band-communications-003.png" alt="Out-of-Band Communications for Incident Response" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;You already harden endpoints, watch identity, and scan cloud services. During a real incident, none of that matters if the attacker sits inside your email, chat, or SSO. You need a clean line to coordinate. That is the core value of out-of-band communications.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt; 
&lt;p&gt;&lt;span&gt;This piece explains what “out-of-band” means, why major frameworks expect it, and how to implement it so you protect privilege, move faster, and meet disclosure requirements.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt; 
&lt;h2&gt;&lt;span&gt;&lt;/span&gt;&lt;/h2&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/out-of-band-crisis-communications-how-to-coordinate-when-your-systems-are-compromised" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/out-of-band-communications-003.png" alt="Out-of-Band Communications for Incident Response" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;You already harden endpoints, watch identity, and scan cloud services. During a real incident, none of that matters if the attacker sits inside your email, chat, or SSO. You need a clean line to coordinate. That is the core value of out-of-band communications.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt; 
&lt;p&gt;&lt;span&gt;This piece explains what “out-of-band” means, why major frameworks expect it, and how to implement it so you protect privilege, move faster, and meet disclosure requirements.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt; 
&lt;h2&gt;&lt;span&gt;&lt;/span&gt;&lt;/h2&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fout-of-band-crisis-communications-how-to-coordinate-when-your-systems-are-compromised&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Industry Trends &amp; Insights</category>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Mon, 13 Oct 2025 09:00:01 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/out-of-band-crisis-communications-how-to-coordinate-when-your-systems-are-compromised</guid>
      <dc:date>2025-10-13T09:00:01Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Turbulence Ahead: The Rise of Third-Party Risk</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/turbulence-ahead-the-rise-of-third-party-risk</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/turbulence-ahead-the-rise-of-third-party-risk" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/3rd-party-risk-blog.png" alt="Turbulence Ahead: The Rise of Third-Party Risk" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;On September 20, 2025, a &lt;/span&gt;&lt;span&gt;ransomware attack&lt;/span&gt;&lt;span&gt; on Collins Aerospace disrupted check-in and boarding systems at major European airports, including London Heathrow, Brussels, and Berlin, causing flight delays and cancellations that stranded passengers.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/turbulence-ahead-the-rise-of-third-party-risk" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/3rd-party-risk-blog.png" alt="Turbulence Ahead: The Rise of Third-Party Risk" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;On September 20, 2025, a &lt;/span&gt;&lt;span&gt;ransomware attack&lt;/span&gt;&lt;span&gt; on Collins Aerospace disrupted check-in and boarding systems at major European airports, including London Heathrow, Brussels, and Berlin, causing flight delays and cancellations that stranded passengers.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fturbulence-ahead-the-rise-of-third-party-risk&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Industry Trends &amp; Insights</category>
      <pubDate>Thu, 25 Sep 2025 09:15:01 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/turbulence-ahead-the-rise-of-third-party-risk</guid>
      <dc:date>2025-09-25T09:15:01Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Crisis Communications and Legal Risk: When Messaging Becomes Evidence</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/crisis-communications-and-legal-risk-when-messaging-becomes-evidence</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/crisis-communications-and-legal-risk-when-messaging-becomes-evidence" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/AI-Generated%20Media/Images/The%20image%20depicts%20a%20tense%20office%20environment%20during%20a%20cyber%20incident%20response%20In%20the%20foreground%20a%20collection%20of%20modern%20communications%20devicesa%20keyboard%20a%20headset%20or%20earpods%20a%20smartphone%20a%20laptop%20This%20has%20a%20semitransparent%20of%20a%20cautionary%20exclamation.png" alt="Crisis Communications and Legal Risk: When Messaging Becomes Evidence" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;It’s go time. This is not a drill. The data is exfiltrated. The ransom note has been left on the server. The security team is working to contain the threat. The tabletop exercises prepared you for some of this. They didn’t prepare you for the flurry of communications, stress, and adrenaline.&amp;nbsp;&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/crisis-communications-and-legal-risk-when-messaging-becomes-evidence" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/AI-Generated%20Media/Images/The%20image%20depicts%20a%20tense%20office%20environment%20during%20a%20cyber%20incident%20response%20In%20the%20foreground%20a%20collection%20of%20modern%20communications%20devicesa%20keyboard%20a%20headset%20or%20earpods%20a%20smartphone%20a%20laptop%20This%20has%20a%20semitransparent%20of%20a%20cautionary%20exclamation.png" alt="Crisis Communications and Legal Risk: When Messaging Becomes Evidence" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;It’s go time. This is not a drill. The data is exfiltrated. The ransom note has been left on the server. The security team is working to contain the threat. The tabletop exercises prepared you for some of this. They didn’t prepare you for the flurry of communications, stress, and adrenaline.&amp;nbsp;&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fcrisis-communications-and-legal-risk-when-messaging-becomes-evidence&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Wed, 10 Sep 2025 09:00:00 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/crisis-communications-and-legal-risk-when-messaging-becomes-evidence</guid>
      <dc:date>2025-09-10T09:00:00Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Cyber Resilience Begins in the Boardroom – Why I’m Joining CYGNVS</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-resilience-begins-in-the-boardroom</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-resilience-begins-in-the-boardroom" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/executive-cybersecurity-tabletop-exercise-for-cyber-resilience-v2%20-%20Edited.png" alt="Cyber Resilience Begins in the Boardroom – Why I’m Joining CYGNVS" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;A little while ago, I had an unforgettable experience at &lt;/span&gt;&lt;a href="https://law.stanford.edu/arthur-and-toni-rembe-rock-center-for-corporate-governance/programs/#slsnav-directors-college"&gt;&lt;span&gt;Stanford Directors’ College&lt;/span&gt;&lt;/a&gt;&lt;span&gt;. There, some of the world’s top board members and C-level executives gathered to discuss the issues that keep them up at night. Topping the list: cyber attacks.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-resilience-begins-in-the-boardroom" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/executive-cybersecurity-tabletop-exercise-for-cyber-resilience-v2%20-%20Edited.png" alt="Cyber Resilience Begins in the Boardroom – Why I’m Joining CYGNVS" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;A little while ago, I had an unforgettable experience at &lt;/span&gt;&lt;a href="https://law.stanford.edu/arthur-and-toni-rembe-rock-center-for-corporate-governance/programs/#slsnav-directors-college"&gt;&lt;span&gt;Stanford Directors’ College&lt;/span&gt;&lt;/a&gt;&lt;span&gt;. There, some of the world’s top board members and C-level executives gathered to discuss the issues that keep them up at night. Topping the list: cyber attacks.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fcyber-resilience-begins-in-the-boardroom&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Industry Trends &amp; Insights</category>
      <pubDate>Mon, 28 Jul 2025 18:39:09 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cyber-resilience-begins-in-the-boardroom</guid>
      <dc:date>2025-07-28T18:39:09Z</dc:date>
      <dc:creator>Damian Gona, Global VP of Revenue</dc:creator>
    </item>
    <item>
      <title>Cyber Resilience Report</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cygnvs-cyber-resilience-report-june-2025</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cygnvs-cyber-resilience-report-june-2025" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/Cyber_Resilience_Report_1200x628-b.jpg" alt="Cyber Resilience Report" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2&gt;&lt;strong&gt;Summary of the Week&lt;/strong&gt;&lt;/h2&gt; 
&lt;ul&gt; 
 &lt;li&gt;Critical RCE vulnerabilities in widely used platforms (Veeam Backup &amp;amp; Replication, Langflow, Grafana) are being actively exploited, highlighting the urgent need for rapid patch management and segmentation of critical infrastructure.&lt;/li&gt; 
 &lt;li&gt;Sophisticated threat actors—including APTs and ransomware groups—are leveraging zero-day exploits (Windows WebDav), social engineering, and open-source tools to bypass traditional defenses and achieve initial access, persistence, and data exfiltration.&lt;/li&gt; 
 &lt;li&gt;The insurance sector is under targeted attack by groups like Scattered Spider, with successful breaches causing operational disruptions and extortion attempts, underscoring the importance of identity controls, employee awareness, and incident response readiness.&lt;/li&gt; 
 &lt;li&gt;High-profile organizations (Washington Post, Victoria’s Secret, Scania) continue to experience breaches involving credential theft, extortion, and business disruption, emphasizing the need for robust third-party risk management and rapid containment protocols.&lt;/li&gt; 
 &lt;li&gt;Large-scale password-spraying and account takeover campaigns (targeting Microsoft Entra ID and Grafana) demonstrate the necessity of enforcing MFA, monitoring for anomalous access, and hardening authentication processes across cloud and SaaS environments.&lt;/li&gt; 
 &lt;li&gt;Chinese state-sponsored threat actors (Salt Typhoon, Hive0154/Mustang Panda) are escalating targeted attacks on telecom, critical infrastructure, and minority communities, exploiting unpatched edge devices and leveraging advanced malware for persistent access and espionage.&lt;/li&gt; 
 &lt;li&gt;The Scattered Spider cybercrime group is executing coordinated, sector-focused attacks using sophisticated social engineering, causing major disruptions and data breaches in retail and insurance, with financial impacts reaching hundreds of millions of dollars.&lt;/li&gt; 
 &lt;li&gt;Healthcare remains a prime target, with large-scale breaches at both providers and SaaS vendors (Episource, McLaren Health Care) exposing millions of patient records, highlighting persistent weaknesses in third-party and internal security controls.&lt;/li&gt; 
 &lt;li&gt;Credential-based attacks are surging, with infostealer malware and social engineering (including creative phishing for application-specific passwords) enabling threat actors to bypass traditional defenses and gain persistent access to sensitive systems.&lt;/li&gt; 
 &lt;li&gt;Cloud and container security risks are underlined by new research showing how misconfigured or overprivileged Kubernetes containers can expose AWS credentials, emphasizing the need for strict privilege management and continuous monitoring in cloud-native environments.&lt;span style="letter-spacing: 0px; background-color: transparent;"&gt;&lt;/span&gt;&lt;/li&gt; 
&lt;/ul&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cygnvs-cyber-resilience-report-june-2025" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/Cyber_Resilience_Report_1200x628-b.jpg" alt="Cyber Resilience Report" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2&gt;&lt;strong&gt;Summary of the Week&lt;/strong&gt;&lt;/h2&gt; 
&lt;ul&gt; 
 &lt;li&gt;Critical RCE vulnerabilities in widely used platforms (Veeam Backup &amp;amp; Replication, Langflow, Grafana) are being actively exploited, highlighting the urgent need for rapid patch management and segmentation of critical infrastructure.&lt;/li&gt; 
 &lt;li&gt;Sophisticated threat actors—including APTs and ransomware groups—are leveraging zero-day exploits (Windows WebDav), social engineering, and open-source tools to bypass traditional defenses and achieve initial access, persistence, and data exfiltration.&lt;/li&gt; 
 &lt;li&gt;The insurance sector is under targeted attack by groups like Scattered Spider, with successful breaches causing operational disruptions and extortion attempts, underscoring the importance of identity controls, employee awareness, and incident response readiness.&lt;/li&gt; 
 &lt;li&gt;High-profile organizations (Washington Post, Victoria’s Secret, Scania) continue to experience breaches involving credential theft, extortion, and business disruption, emphasizing the need for robust third-party risk management and rapid containment protocols.&lt;/li&gt; 
 &lt;li&gt;Large-scale password-spraying and account takeover campaigns (targeting Microsoft Entra ID and Grafana) demonstrate the necessity of enforcing MFA, monitoring for anomalous access, and hardening authentication processes across cloud and SaaS environments.&lt;/li&gt; 
 &lt;li&gt;Chinese state-sponsored threat actors (Salt Typhoon, Hive0154/Mustang Panda) are escalating targeted attacks on telecom, critical infrastructure, and minority communities, exploiting unpatched edge devices and leveraging advanced malware for persistent access and espionage.&lt;/li&gt; 
 &lt;li&gt;The Scattered Spider cybercrime group is executing coordinated, sector-focused attacks using sophisticated social engineering, causing major disruptions and data breaches in retail and insurance, with financial impacts reaching hundreds of millions of dollars.&lt;/li&gt; 
 &lt;li&gt;Healthcare remains a prime target, with large-scale breaches at both providers and SaaS vendors (Episource, McLaren Health Care) exposing millions of patient records, highlighting persistent weaknesses in third-party and internal security controls.&lt;/li&gt; 
 &lt;li&gt;Credential-based attacks are surging, with infostealer malware and social engineering (including creative phishing for application-specific passwords) enabling threat actors to bypass traditional defenses and gain persistent access to sensitive systems.&lt;/li&gt; 
 &lt;li&gt;Cloud and container security risks are underlined by new research showing how misconfigured or overprivileged Kubernetes containers can expose AWS credentials, emphasizing the need for strict privilege management and continuous monitoring in cloud-native environments.&lt;span style="letter-spacing: 0px; background-color: transparent;"&gt;&lt;/span&gt;&lt;/li&gt; 
&lt;/ul&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fcygnvs-cyber-resilience-report-june-2025&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Thu, 26 Jun 2025 20:50:55 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/cygnvs-cyber-resilience-report-june-2025</guid>
      <dc:date>2025-06-26T20:50:55Z</dc:date>
      <dc:creator>CYGNVS Content Team</dc:creator>
    </item>
    <item>
      <title>Reinventing Cyber Incident Readiness and Response Collaboration</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/reinventing-cyber-incident-readiness-and-response-collaboration</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/reinventing-cyber-incident-readiness-and-response-collaboration" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/Blog/Brilliance%20Security%20Podcast.jpeg" alt="Reinventing Cyber Incident Readiness and Response Collaboration" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/reinventing-cyber-incident-readiness-and-response-collaboration" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/Blog/Brilliance%20Security%20Podcast.jpeg" alt="Reinventing Cyber Incident Readiness and Response Collaboration" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Freinventing-cyber-incident-readiness-and-response-collaboration&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Mon, 16 Jun 2025 19:07:07 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/reinventing-cyber-incident-readiness-and-response-collaboration</guid>
      <dc:date>2025-06-16T19:07:07Z</dc:date>
      <dc:creator>Julie Rockett</dc:creator>
    </item>
    <item>
      <title>A Tale of Two Incidents</title>
      <link>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/a-tale-of-two-incidents</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/a-tale-of-two-incidents" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/A%20Tale%20of%20Two%20Incidents_blog_1200x627.jpg" alt="A Tale of Two Incidents" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;It’s Friday at 7:00 p.m. on a long holiday weekend, and your company just got hit by ransomware. Key systems like SSO and email are locked, employees are offline, and the response plan that looked so solid on paper suddenly feels anachronistic. Sound familiar? If you’ve been through a major incident, you know how the first 24 hours can feel like pure chaos, or “herding cats,” as some like to say. Imagine if you could turn that frenzy into an organized, efficient process that gets your business back online faster.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/a-tale-of-two-incidents" title="" class="hs-featured-image-link"&gt; &lt;img src="https://cygnvs-25378050.hs-sites-eu1.com/hubfs/A%20Tale%20of%20Two%20Incidents_blog_1200x627.jpg" alt="A Tale of Two Incidents" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span&gt;It’s Friday at 7:00 p.m. on a long holiday weekend, and your company just got hit by ransomware. Key systems like SSO and email are locked, employees are offline, and the response plan that looked so solid on paper suddenly feels anachronistic. Sound familiar? If you’ve been through a major incident, you know how the first 24 hours can feel like pure chaos, or “herding cats,” as some like to say. Imagine if you could turn that frenzy into an organized, efficient process that gets your business back online faster.&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=25378050&amp;amp;k=14&amp;amp;r=http%3A%2F%2Fcygnvs-25378050.hs-sites-eu1.com%2Fresources%2Finsights%2Fa-tale-of-two-incidents&amp;amp;bu=http%253A%252F%252Fcygnvs-25378050.hs-sites-eu1.com%252Fresources%252Finsights&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Cyber Readiness &amp; Response</category>
      <pubDate>Fri, 28 Feb 2025 23:37:23 GMT</pubDate>
      <guid>http://cygnvs-25378050.hs-sites-eu1.com/resources/insights/a-tale-of-two-incidents</guid>
      <dc:date>2025-02-28T23:37:23Z</dc:date>
      <dc:creator>Julie Rockett</dc:creator>
    </item>
  </channel>
</rss>
