Coalition & Allianz Commercial Expand Strategic Global Cyber Insurance Partnership
Cyber Incident? Get Help

July Risk Roundup: Cybersecurity shiny objects — don’t overlook the basics

Featured Image for July Risk Roundup: Cybersecurity shiny objects — don’t overlook the basics

A healthy dose of skepticism is never a bad idea in cybersecurity. People will try to take advantage of chaotic situations, bad ideas will be expressed when people have ulterior motives, and sometimes a flashy headline is designed to sell you ads rather than give you useful information.

1. Fake Kaseya VSA security update backdoors networks with Cobalt Strike

Attacker’s creed: never let a good disaster go to waste. The lesson for defenders? Chaotic conditions demand extra vigilance – when things go wrong, it’s helpful to have defined procedures and team members trained via exercises/drills to respond.

 Fake Kaseya VSA security update backdoors networks with Cobalt Strike

View tweet here

2. RSA sponsored content issues

Kudos to RSA for (retroactively) policing their sponsored content and dunking on the “blame the interns” meme. But how did an article about blockchain fixing TCP/IP security issues that didn’t demonstrate a solution at all make it through editorial reviews?

RSA sponsored content issues

View tweet here

3. Headline-driven threat landscape

Media sensationalism is nothing new, and the problem is worse in tech and infosec due to unfamiliar vocabulary. It takes time and effort to contextualize cyber risk, so both infosec and business leaders need to allocate that time rather than following clickbait headlines.

 Headline-driven threat landscape

View tweet here

If you enjoyed this post be sure to check our blog weekly; the Risk Roundup runs Friday mornings in addition to more enlightening content we post related to the ever-evolving landscape of digital risk. Follow us on Twitter (@SolveCyberRisk) and LinkedIn (Coalition Inc). If you have any suggestions for content that we should be adding to our reading list, let us know!

Related blog posts

See all articles
Security

Blog

Risky Tech Ranking: Q1 2026 Updates

See how Coalition’s Risky Tech Ranking evolved in Q1 2026 with updates on the number of vendors scored, contributing vulnerabilities, Vendor Scores, and more.
Lucio Fernandez-ArjonaMay 05, 2026
Security

Blog

Security Alert: Vercel Breach Results in Compromised Customer Credentials

Coalition notified policyholders of a breach that allowed unauthorized access to certain internal systems of Vercel, a cloud development platform.
Joe ToomeyApril 20, 2026
Security

Blog

Precision Defense: Wirespeed’s Custom Groups & Granular Remediations

In Q1 2026, Wirespeed shipped new integrations and product updates to help your team manage threats on their own terms.
Jake ReynoldsApril 06, 2026