by valino | May 30, 2026 | Compliance, Hacking
The first third-party risk breach we worked in 2026 began at a vendor most of the company had forgotten existed. The vendor supplied a small inventory reconciliation service the company had integrated four years earlier through a service account with full read access...
by valino | May 29, 2026 | Hacking, Phishing
The first credential stuffing incident we triaged in 2026 looked exactly like a healthy week of customer logins. The login success rate had risen slightly. The login volume had risen sharply. The geographic distribution had broadened. Three weeks later, a fraud...
by valino | May 28, 2026 | Hacking, SIEM
The first detection engineering maturity assessment we ran in 2026 produced a result that surprised the CISO and ultimately reshaped the program. The SOC had 4,712 detection rules in production. Of those, 312 had fired in the previous twelve months. Of those 312, only...
by valino | May 27, 2026 | Hacking, Compliance
The most expensive backup recovery failure we triaged in 2026 was caused by a recovery procedure that had not been tested under load since 2021. The backups themselves were intact. The encryption keys were available. The storage tier was online. The recovery script,...
by valino | May 26, 2026 | Hacking, Compliance
The most damaging insider threat case we worked in 2026 was not malicious. It was a senior engineer, two weeks before voluntarily leaving a company, who copied a folder of design documents to a personal cloud account because he wanted to remember what he had built. He...