Topic

Reports & Trends

Readings of the major global and regional reports, and the threat trends of the year.

8 articles in this topic

Vulnerabilities

Four Word RCE Flaws Turn Outlook Preview Pane into an Attack Surface

Microsoft's May 2026 Patch Tuesday disclosed four Word RCE flaws exploitable through Outlook's preview pane — no clicks, no macros, no warnings. Here's what Saudi CISOs must do now.

20 May 2026 5 min
Vulnerabilities

CVE-2026-40361: Zero-Click Outlook RCE Lets Attackers Compromise Executives by Simply Sending an Email

Microsoft patches a critical zero-click use-after-free bug in Outlook that triggers RCE when a victim merely previews a malicious email — no clicks, no attachments needed. Here's what Saudi CISOs must do now.

16 May 2026 4 min
Cloud & Identity

CalPhishing: How Hackers Steal M365 Sessions Through Outlook Calendar Invites

A new phishing technique called CalPhishing weaponizes Outlook calendar invites to bypass MFA and steal Microsoft 365 session tokens — with hundreds of organizations compromised daily. Here's what Saudi CISOs need to know.

16 May 2026 6 min
Vulnerabilities

CVE-2026-40361: Zero-Click Outlook RCE Lets Attackers Compromise Executives by Simply Sending an Email

A critical zero-click use-after-free vulnerability in Microsoft Outlook lets attackers achieve remote code execution through the Preview Pane alone. Learn why Saudi financial institutions must patch CVE-2026-40361 immediately.

15 May 2026 5 min
Breaches & Data Leaks

Verizon 2026 DBIR: What Saudi Banks Must Learn from 12,195 Breaches

Verizon's 2026 DBIR reveals third-party breaches doubled to 30%, vulnerability exploitation overtook phishing, and ransomware hit 44% of cases. Here's what SAMA-regulated banks must do now.

11 May 2026 5 min
Reports & Trends

29 Minutes to Lateral Movement: CrowdStrike's 2026 Threat Report and What It Demands from Saudi Financial SOCs

The average time for an attacker to move laterally after initial access is now just 29 minutes. CrowdStrike's 2026 Global Threat Report resets the benchmark — and SAMA-regulated SOCs must answer accordingly.

14 Apr 2026 5 min
Reports & Trends

M-Trends 2026: Attackers Hand Off Access in 22 Seconds — What Saudi Bank SOC Teams Must Do Today

Mandiant's M-Trends 2026 report drops one number that should reshape every SOC in Saudi Arabia: 22 seconds. That's how long it now takes an attacker to hand off a compromised foothold to a secondary threat actor — down from over 8 hours just three years ago.

4 Apr 2026 6 min
Reports & Trends

Lesson 40: The Future of Cybersecurity — Trends Shaping 2026-2030 for Saudi Financial Institutions

Security Leadership Path — Lesson 10 of 10. Discover the key cybersecurity trends that will define the next five years for Saudi financial institutions and how to prepare today.

3 Apr 2026 8 min

Start a conversation

What are you working through?

Describe where you stand, and a specialist will reply with a clear next step — not a generic pitch.

  • A free first consultation
  • A reply within one business day
  • Full confidentiality