Cybereason CEO quits, Skybox shuts down, More Bybit heist details – ESW #397
In the enterprise security news,
- Why is a consulting firm raising a $75M Series B?
- A TON of Cybereason drama just dropped
- Skybox Security shuts down after 23 years
- The chilling effect on security leaders is HERE, and what that means
- IT interest in on-prem, does NOT mean they’re quitting the cloud
- Updates on the crazy Bybit heist
- the state of MacOS malware
- Skype is shutting down
- Mice with CRISPR’ed woolly mammoth fur is NOT the real life Jurassic Park anyone was expecting
All that and more, on this episode of Enterprise Security Weekly.
Hosts
- 1. FUNDING: Provided by Security, Funded #183 – The Shutdown Blues
- 2. UN-ACQUISITION: SoftBank-Backed Cybereason CEO Quits After Boardroom Turmoil
The drama here is intense.
Let's back up a bit and go through the whole story:
- Cybereason was one of the original EDR vendors that emerged around the same time that next-gen AV started eating legacy AV's lunch. This resulted in Symantec, McAfee and several other security giants falling from grace and getting parted out by PE firms.
- Cybereason had some great marketing and raised a lot of money - $800M, resulting in a $2.7B valuation at their peak - they were one of over 50 cybersecurity unicorns as recently as 2022.
- Cybereason FILED FOR IPO in January 2022.
- Then, they killed the IPO and were one of the first cybersecurity companies to announce layoffs, in mid 2022.
- By April 2023, the news was that Cybereason cut their valuation by 90% (down to ~$250M)
- In November 2024, we read press releases that Cybereason was set to merge with Trustwave.
All right! Now we're all caught up to today's news. The main points here are that:
- Cybereason's CEO is stepping down after fighting with investors for months
- The merger with Trustwave has been terminated
- The plan was to put an additional $100M into Cybereason, a deal that could still close within the next week, with the CFO stepping in as interim CEO.
- 3. SHUTDOWN: Skybox Security shuts down, lays off 300 employees as Tufin acquires assets
There were once four firewall orchestration vendors: Firemon, AlgoSec, Tufin, and Skybox Security.
Then the cloud happened.
Now there are three.
The End.
- 4. TRENDS: LLM Hacks Its Evals
Agentic AI's amazing productivity hack? Cheat on the test.
These things are getting WAY too human.
- 5. TRENDS: How to exploit top LRMs that reveal their reasoning steps
As AI tools and models get more sophisticated, the problems get more complex and harder to solve.
- 6. TRENDS: Why Security Leaders Are Opting for Consulting Gigs
Very few surprises in here, but interesting to see it called out as a larger trend. On a daily basis, I see folks laughing at even the IDEA of taking a CISO role.
- 7. TRENDS: Owen Rogers on LinkedIn: *Treat claims of cloud repatriation with caution*
TL;DR - there are stories about orgs pulling workloads out of the cloud, but it's more of a redistribution of resources into a hybrid model, not a widespread trend of folks "quitting the cloud."
- 8. BREACHES: Bybit Hack Traced to Safe{Wallet} Supply Chain Attack Exploited by North Korean Hackers
Here are the latest updates on the largest heist in history (digital currency or otherwise):
- Bybit wasn't compromised directly - a third party, Safe{Wallet} was the source of the attack
- The attack has been attributed to North Korea - crypto theft makes up a large portion of the country's GDP
- Bybit offered a $140M bounty to anyone that can trace the stolen funds (which it has already covered with private funds it had in reserve)
- Bybit announced that 3% of the stolen funds were frozen, 20% had 'gone dark' and 77% was still traceable, despite going through several tumblers and getting converted into Bitcoin.
A great writeup here, from Elliptic, provides some insight on how it's even possible to steal $1.5B in cryptocurrency and potentially get away with it.
- 9. RESEARCH: The Mac Malware of 2024: A comprehensive analysis of the year’s new macOS malware
If you're defending Macs, this is worth a read to understand what the latest Mac malware is up to!
- 10. RESEARCH: How We Hacked Multi-Billion Dollar Companies in 30 Minutes Using a Fake VSCode Extension
I'm not a huge fan of security orgs testing theories in production, but this is a good reminder that your employees will do 0.3 seconds of due diligence before clicking on something, probably not even registering the misspelling.
We just need to plan for that and be ready to protect them when they screw up.
- 11. EPITAPH: As Skype shuts down, its legacy is end-to-end encryption for the masses
Skype was E2EE before it was cool
- 12. MEDIA: Zero Day (American TV series) – Wikipedia
Just heard about this today, so I know nothing about it. I'll be back next week with reviews!
- 13. SQUIRREL: Scientists genetically engineer mice with thick hair like the extinct woolly mammoth