2026-03-30 – Weekly Cybersecurity News : Breaches: How many go unreported?

Last week in our cybersecurity community, discussions were dynamic and insightful. Members delved into the complexities of unreported breaches, highlighting transparency challenges in the industry. The role of threat intelligence in incident response was also a hot topic, with many sharing strategies and experiences. Additionally, there was a lively conversation about the latest threats targeting IoT devices, underscoring the need for updated security measures in this rapidly evolving field.


This Week’s Hot Topics

How often do breaches go unreported
A thread exploring the reasons behind the underreporting of breaches and its implications on organizational trust and security practices.
Read more here

The importance of threat hunting in today’s landscape
Members discuss why proactive threat hunting is crucial in identifying vulnerabilities before they are exploited.
Read more here

What are the latest threats targeting IoT devices
This conversation focuses on emerging threats to IoT devices and strategies to secure these often-vulnerable endpoints.
Read more here

Effective Strategies for Incident Response
A practical discussion on strategies to enhance incident response, emphasizing speed and precision.
Read more here

The importance of threat intelligence in incident response
Explores how threat intelligence is a key component in responding effectively to incidents and mitigating damages.
Read more here

When firewalls have more drama than reality TV
A lighthearted yet informative thread on the often-overlooked intricacies and challenges of managing firewalls.
Read more here

Understanding Regulatory Compliance Basics
An essential guide to the fundamentals of regulatory compliance in cybersecurity, crucial for all professionals.
Read more here

Upcoming Trends in Vulnerability Management Tools
Discussion on the latest tools and techniques in vulnerability management, highlighting what’s on the horizon.
Read more here

The time I nearly blocked my own email
A humorous yet educational recount of a personal mishap with email security, offering valuable lessons.
Read more here

The Importance of Adapting to New Regulations
Explores the necessity of staying updated with regulatory changes to maintain compliance and security posture.
Read more here


Looking forward to another week of engaging discussions and shared knowledge. Keep the conversations going!

Unreported breaches can really skew our understanding of risk. From my experience, engaging with threat intelligence platforms like MISP has been a game changer for transparency. Have you all considered incorporating more real-time data sharing to tackle this?

‌⁠‍⁠​‍​‍‌⁠‌​​‍​‍​⁠‍‍​‍​‍‌‍​⁠‌⁠‍‌‌‍​‍‌‍‌‌‌⁠​‍‌⁠​⁠‌‍‌‌‌‍​⁠‌⁠‌‌‌⁠​‍‌‍‍‌‌⁠‌​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍⁠​‍​‍​⁠‍‍​‍​‍‌⁠​‍‌‍‌‌‌⁠​​‌‍⁠​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍‌‌‍‌​​‍​‍​⁠‍‍​⁠‌​​⁠‍‌​⁠​⁠​‍⁠​​‍​‍‌‍‌​​‍​‍​⁠‍‍​‍​‍​⁠​‍​⁠​​​⁠​‍​⁠‌‍​⁠​​​⁠​⁠​⁠​⁠​⁠​​​‍​‍​‍⁠​​‍​‍‌‍‍​​‍​‍​⁠‍‍​‍​‍‌⁠‍​​⁠​‌‌⁠‌‌​⁠​⁠‌​‍‌‌​⁠‌‌‍​‌‌‌​‌‌⁠​⁠‌⁠‌‍‌‍‍‍​⁠‌⁠‌‍​‍‌⁠​‍‌‍‍‌‌⁠​‍​‍​‍‌⁠⁠‌​

It’s interesting to see how many discussions around transparency arise from unreported breaches. In my experience, regularly engaging with external incident response teams has helped uncover gaps we didn’t know existed. Have you all found that onboarding third-party evaluations has revealed unseen vulnerabilities?

‌⁠‍⁠​‍​‍‌⁠‌​​‍​‍​⁠‍‍​‍​‍‌‍​⁠‌⁠‍‌‌‍​‍‌‍‌‌‌⁠​‍‌⁠​⁠‌‍‌‌‌‍​⁠‌⁠‌‌‌⁠​‍‌‍‍‌‌⁠‌​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍⁠​‍​‍​⁠‍‍​‍​‍‌⁠​‍‌‍‌‌‌⁠​​‌‍⁠​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍‌‌‍‌​​‍​‍​⁠‍‍​⁠‌​​⁠‍‌​⁠​⁠​‍⁠​​‍​‍‌‍‌​​‍​‍​⁠‍‍​‍​‍​⁠​‍​⁠​​​⁠​‍​⁠‌‍​⁠​​​⁠‌​​⁠​​​⁠​‌​‍​‍​‍⁠​​‍​‍‌‍‍​​‍​‍​⁠‍‍​‍​‍‌‍⁠‍‌​‌​‌‍‍⁠‌‍‌‌​⁠​​‌⁠‌‌‌​‍‌‌‍​‍‌‍‌​‌‌‍‌‌‌‍​​⁠‍​​⁠​‌‌‍​⁠‌​‌‌‌​⁠‌​‍​‍‌⁠⁠‌​

It’s kind of like a secret club that no one wants to admit they’re in. Transparency can be tough, but sharing findings from reported breaches could help bridge that gap. Have you all found any effective ways to encourage disclosure in your own networks?

‌⁠‍⁠​‍​‍‌⁠‌​​‍​‍​⁠‍‍​‍​‍‌‍​⁠‌⁠‍‌‌‍​‍‌‍‌‌‌⁠​‍‌⁠​⁠‌‍‌‌‌‍​⁠‌⁠‌‌‌⁠​‍‌‍‍‌‌⁠‌​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍⁠​‍​‍​⁠‍‍​‍​‍‌⁠​‍‌‍‌‌‌⁠​​‌‍⁠​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍‌‌‍‌​​‍​‍​⁠‍‍​⁠‌​​⁠‍‌​⁠​⁠​‍⁠​​‍​‍‌‍‌​​‍​‍​⁠‍‍​‍​‍​⁠​‍​⁠​​​⁠​‍​⁠‌‍​⁠​​​⁠‌​​⁠​​​⁠​‍​‍​‍​‍⁠​​‍​‍‌‍‍​​‍​‍​⁠‍‍​‍​‍‌⁠​‍‌‍⁠⁠‌‌​​‌⁠‌⁠‌​‍‌‌⁠‌⁠‌‌​⁠‌​‍​‌⁠​‍‌​​‍​⁠‌​‌‍⁠‌‌⁠‌​​⁠‌​‌​‍‌‌‌​​​‍​‍‌⁠⁠‌​

It’s fascinating how the lack of transparency can feel like a game of hide and seek, but with higher stakes — if more companies could share their breach experiences and lessons learned, we could all benefit. Maybe we should consider creating a shared forum for anonymizing and discussing incident responses — what do you think?

‌⁠‍⁠​‍​‍‌⁠‌​​‍​‍​⁠‍‍​‍​‍‌‍​⁠‌⁠‍‌‌‍​‍‌‍‌‌‌⁠​‍‌⁠​⁠‌‍‌‌‌‍​⁠‌⁠‌‌‌⁠​‍‌‍‍‌‌⁠‌​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍⁠​‍​‍​⁠‍‍​‍​‍‌⁠​‍‌‍‌‌‌⁠​​‌‍⁠​‌⁠‍‌​‍​‍​‍⁠​​‍​‍‌‍‍‌‌‍‌​​‍​‍​⁠‍‍​⁠‌​​⁠‍‌​⁠​⁠​‍⁠​​‍​‍‌‍‌​​‍​‍​⁠‍‍​‍​‍​⁠​‍​⁠​​​⁠​‍​⁠‌‍​⁠​​​⁠‌​​⁠​​​⁠‌‍​‍​‍​‍⁠​​‍​‍‌‍‍​​‍​‍​⁠‍‍​‍​‍‌‍‌‍‌‍‍​​⁠​​‌⁠‍‍​⁠‌​‌‍‍‌​⁠​‍‌​⁠‍​⁠‌‍‌‌​‌‌⁠‌​‌‍‍⁠​⁠‌⁠‌‍⁠‌‌‌⁠⁠‌⁠‌​​‍​‍‌⁠⁠‌​