{"id":209217,"date":"2026-02-02T10:30:13","date_gmt":"2026-02-02T15:30:13","guid":{"rendered":"https:\/\/nationalcybersecuritysociety.org\/?p=209217"},"modified":"2026-07-09T10:29:23","modified_gmt":"2026-07-09T14:29:23","slug":"ctw-27-january-2026","status":"publish","type":"post","link":"https:\/\/nationalcybersecuritysociety.org\/?p=209217","title":{"rendered":"CTW #27 \u2014 January 2026"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;||65px|||&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_image src=&#8221;https:\/\/nationalcybersecuritysociety.org\/wp-content\/uploads\/2026\/02\/NCSS-3397-Bulletin-Header-Footer-Header-Graphic-1600&#215;350-Compressed.png&#8221; title_text=&#8221;NCSS-3397-Bulletin-Header-Footer-Header Graphic 1600&#215;350-Compressed&#8221; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][et_pb_text _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p><em>Published: January 16, 2026<\/em><\/p>\n<p><em><\/em><\/p>\n<p>Our bulletin <strong><em>Cyber Threat Watch<\/em><\/strong> has been created to help small businesses stay up to date on the latest threats, news, and events affecting their business. The content has been curated to make cybersecurity easy and accessible for both technical and nontechnical readers.<\/p>\n<p>[\/et_pb_text][et_pb_heading title=&#8221;Featured Cyber Threat \u2014 Credential Harvesting&#8221; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; title_level=&#8221;h2&#8243; title_font=&#8221;|600|||||||&#8221; title_text_color=&#8221;#00688E&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_heading][et_pb_image src=&#8221;https:\/\/nationalcybersecuritysociety.org\/wp-content\/uploads\/2026\/02\/27-sign-in.png&#8221; title_text=&#8221;27-sign-in&#8221; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][et_pb_text _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; header_3_text_color=&#8221;#00688E&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p><span>Many cybersecurity incidents may look different on the surface, but they often begin the same way\u2014attackers gather legitimate login credentials and use them to access systems, acting as if they were authorized users. This technique, known as credential harvesting, continues to be one of the most common paths to data theft and exposure.<\/span><\/p>\n<p><span>The latest updates from the Cybersecurity and Infrastructure Security Agency (CISA) reinforce that credential harvesting remains a primary entry point for both criminal and state-sponsored cyber activity. <a href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/12\/19\/cisa-and-partners-release-update-malware-analysis-report-brickstorm-backdoor\">CISA&#8217;s recent Malware Analysis Report on the BRICKSTORM Backdoor, jointly released with its partners, confirms that attackers are actively extracting credentials to maintain long-term access<\/a>. For small businesses, this shows why credential harvesting is an ongoing threat that requires consistent attention to prevention.<\/span><\/p>\n<h3>How Credential Harvesting Works<\/h3>\n<p><span>Credential harvesting refers to the technique used to gather valid usernames, passwords, authentication tokens, or other login information. With these legitimate credentials, attackers can access systems without triggering noticeable alarms.<\/span><\/p>\n<p><span>This method continues to be effective for the following reasons:<\/span><\/p>\n<ul>\n<li><span>Stolen credentials allow attackers to appear as authorized users.<\/span><\/li>\n<li><span>Many systems still rely on passwords or single-factor authentication.<\/span><\/li>\n<li><span>Credentials often remain valid for a long period, even after compromise.<\/span><\/li>\n<li><span>Authorized yet illegitimate access can still function even when malware is removed or security controls are appropriately updated.<\/span><\/li>\n<\/ul>\n<p><span>Once credentials are harvested, attackers can move through systems, access sensitive data, or deploy ransomware quietly.<\/span><\/p>\n<p>[\/et_pb_text][et_pb_image src=&#8221;https:\/\/nationalcybersecuritysociety.org\/wp-content\/uploads\/2026\/02\/27-tech.jpg&#8221; title_text=&#8221;27-tech&#8221; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][et_pb_text _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; header_3_text_color=&#8221;#00688E&#8221; custom_css_free_form=&#8221;ol {||  list-style: none !important; ||  counter-reset: item; ||}||||ol li {||  counter-increment: item; ||  position: relative; ||  padding-left: 2em; \/* Adjust as needed for spacing *\/||}||||ol li::before {||  content: counter(item) %22.%22; ||  font-weight: bold; ||  position: absolute;||  left: 0; ||  width: 1.5em; ||  text-align: right;||}&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h3>What Recent Government Warnings Show<\/h3>\n<p>The following recent government updates highlight that credential harvesting remains a common access method across different threat types.<\/p>\n<ul>\n<li><strong><span>BRICKSTORM:<\/span><\/strong><span> A joint update from CISA and its partners confirms that state-sponsored actors are extracting legitimate credentials to maintain long-term, stealthy access to targeted organizational systems.<\/span><\/li>\n<li><strong><span>Cisco Firewall Devices:<\/span><\/strong><span> We covered CISA\u2019s Emergency Directive (ED) 25-03 in <a href=\"https:\/\/nationalcybersecuritysociety.org\/2025\/10\/29\/ctw-24-october-2025\/\">our October bulletin<\/a>. Since then, <a href=\"https:\/\/www.cisa.gov\/ed-25-03-guidance-device-updates-and-patching\">the Implementation Guidance<\/a> has been released, clarifying how organizations should properly update affected devices and verify that patches have been applied correctly. CISA found that some systems marked as \u201cpatched\u201d were still vulnerable and left authentication paths exposed.<\/span><\/li>\n<li><strong><span>Akira Ransomware:<\/span><\/strong><span> <a href=\"https:\/\/www.cisa.gov\/news-events\/cybersecurity-advisories\/aa24-109a\">CISA\u2019s advisory<\/a> shows that credential harvesting has been used by criminal organizations for years and continues to affect small and medium-sized businesses, particularly through remote access systems that lack strong authentication.<\/span><\/li>\n<\/ul>\n<h3>Why It Matters and What to Do for Your Business<\/h3>\n<p><span>Small businesses are frequently targeted because credential controls are often assumed to be handled by IT service providers or built-in tools. In reality, gaps around identity, patching, and remote access are often present. To mitigate risk, your business can take the following practical steps:<\/span><\/p>\n<ol>\n<li><strong> <\/strong><strong><span>Management of Identity<br \/><\/span><\/strong>&#8211; Remove unused or inactive accounts, such as those for former employees, contractors, and vendors<br \/>&#8211; Limit administrative privileges so everyday tasks are not performed with admin-level access<br \/>&#8211; Avoid shared credentials for email, accounting systems, document sharing platforms, messaging tools, and remote access, which make misuse difficult to trace<\/li>\n<li><strong>Management of Patches<br \/><\/strong>&#8211; Verify that necessary updates were applied correctly, not just scheduled or assumed to be completed<br \/>&#8211; Confirm regularly that updates are fully completed, including operating systems, business applications, and network devices such as <a href=\"https:\/\/www.fortinet.com\/resources\/cyberglossary\/firewall\">firewalls<\/a>, <a href=\"https:\/\/azure.microsoft.com\/en-us\/resources\/cloud-computing-dictionary\/what-is-vpn\">virtual private networks (VPNs)<\/a>, and routers<br \/>&#8211; Replace unsupported hardware or software that can no longer receive security updates<\/li>\n<li><strong>Management of Remote Access <br \/><\/strong>&#8211; Require <a href=\"https:\/\/aws.amazon.com\/what-is\/mfa\/\">multi-factor authentication (MFA)<\/a> for all remote connections, not only for administrators<br \/>&#8211; Review who has remote access and whether it is still required for their role<br \/>Monitor for unusual login activity, such as access outside normal business hours or from unexpected locations<\/li>\n<\/ol>\n<h3>Conclusion<\/h3>\n<p>Credential harvesting is not a new threat, but it remains one of the most common ways attackers gain access. Recent government advisories underscore that both criminal and state\u2011sponsored actors continue to gather legitimate credentials and use them to work their way through systems without triggering alerts. For small businesses, revisiting basic security controls around identity, patching, and remote access is one of the most effective ways to reduce potential risk.<\/p>\n<p>The NCSS encourages businesses to adopt comprehensive security practices and stay informed about evolving threats. <span>We recommend you consider becoming an NCSS member to access a wide range of our services. For more information, visit our <a href=\"https:\/\/nationalcybersecuritysociety.org\/small-business\/\">Small Business page<\/a><\/span>.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;|auto|-44px|auto||&#8221; custom_padding=&#8221;71px||0px|||&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_divider _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;||-2px|||&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_divider][et_pb_text _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; header_2_font=&#8221;|600|||||||&#8221; header_2_text_color=&#8221;#00688E&#8221; custom_margin=&#8221;||2px|||&#8221; custom_padding=&#8221;||0px|||&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h2><strong><span>References<\/span><\/strong><\/h2>\n<p><span><a href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/12\/19\/cisa-and-partners-release-update-malware-analysis-report-brickstorm-backdoor\">https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/12\/19\/cisa-and-partners-release-update-malware-analysis-report-brickstorm-backdoor<\/a><\/span><\/p>\n<p><span><a href=\"https:\/\/industrialcyber.co\/cisa\/cisa-nsa-sound-alarm-on-brickstorm-backdoor-used-by-china-linked-actors-targeting-vmware-windows-systems\/\">https:\/\/industrialcyber.co\/cisa\/cisa-nsa-sound-alarm-on-brickstorm-backdoor-used-by-china-linked-actors-targeting-vmware-windows-systems\/<\/a><\/span><\/p>\n<p><span><a href=\"https:\/\/www.techradar.com\/pro\/security\/under-the-radar-google-warns-new-brickstorm-malware-was-stealing-data-from-us-firms-for-over-a-year\">https:\/\/www.techradar.com\/pro\/security\/under-the-radar-google-warns-new-brickstorm-malware-was-stealing-data-from-us-firms-for-over-a-year<\/a><\/span><\/p>\n<p><span><a href=\"https:\/\/www.cisa.gov\/ed-25-03-guidance-device-updates-and-patching\">https:\/\/www.cisa.gov\/ed-25-03-guidance-device-updates-and-patching<\/a><\/span><\/p>\n<p><span><a href=\"https:\/\/www.cisa.gov\/news-events\/cybersecurity-advisories\/aa24-109a\">https:\/\/www.cisa.gov\/news-events\/cybersecurity-advisories\/aa24-109a<\/a><\/span><\/p>\n<p>&nbsp;<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;2px|||||&#8221; global_module=&#8221;208703&#8243; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;48px|||||&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_image src=&#8221;https:\/\/nationalcybersecuritysociety.org\/wp-content\/uploads\/2025\/09\/NCSS-3397-Bulletin-Header-Footer-Attribution-Banner-1600&#215;200-1.png&#8221; title_text=&#8221;NCSS-3397-Bulletin-Header-Footer-Attribution Banner 1600&#215;200&#8243; _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_image][et_pb_text _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; text_font_size=&#8221;8px&#8221; header_2_font=&#8221;|600|||||||&#8221; header_2_text_color=&#8221;#CCC21B&#8221; text_font_size_tablet=&#8221;13px&#8221; text_font_size_phone=&#8221;&#8221; text_font_size_last_edited=&#8221;on|tablet&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h2>About the NCSS<\/h2>\n<p><span>The National Cybersecurity Society (NCSS) is committed to improving the online safety and security of the small business community through education, awareness, and advocacy. As a 501(3)(c) organization, the NCSS uses funds from charitable donations and grants to develop educational materials, webinars, weekly cyber tips, videos, and how-to-guides. The organization\u2019s goal is to enable and empower small and medium businesses to obtain cybersecurity services, assist them in understanding their cyber risk, and advise on the type of protection needed. We want to continue to grow our community and encourage you to tell other small businesses we are here to help.<\/span><\/p>\n<p><em>The NCSS is committed to respecting the use of images in our communication efforts. Accordingly, unless otherwise specifically noted, the graphics in our bulletin are sourced under license from Adobe Stock. The header and footer images were designed and purchased through a contract with Eyedea Advertising &amp; Design Studio.<\/em><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Published: January 16, 2026 Our bulletin Cyber Threat Watch has been created to help small businesses stay up to date on the latest threats, news, and events affecting their business. The content has been curated to make cybersecurity easy and accessible for both technical and nontechnical readers.Many cybersecurity incidents may look different on the surface, [&hellip;]<\/p>\n","protected":false},"author":27,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[25],"tags":[],"class_list":["post-209217","post","type-post","status-publish","format-standard","hentry","category-bulletins"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>CTW #27 \u2014 January 2026 - National Cybersecurity Society<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"CTW #27 \u2014 January 2026 - National Cybersecurity Society\" \/>\n<meta property=\"og:description\" content=\"Published: January 16, 2026 Our bulletin Cyber Threat Watch has been created to help small businesses stay up to date on the latest threats, news, and events affecting their business. The content has been curated to make cybersecurity easy and accessible for both technical and nontechnical readers.Many cybersecurity incidents may look different on the surface, [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\" \/>\n<meta property=\"og:site_name\" content=\"National Cybersecurity Society\" \/>\n<meta property=\"article:published_time\" content=\"2026-02-02T15:30:13+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-07-09T14:29:23+00:00\" \/>\n<meta name=\"author\" content=\"Mike Frising\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Mike Frising\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217#article\",\"isPartOf\":{\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\"},\"author\":{\"name\":\"Mike Frising\",\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/#\/schema\/person\/a9516a6e5c3316345075c96273351c5f\"},\"headline\":\"CTW #27 \u2014 January 2026\",\"datePublished\":\"2026-02-02T15:30:13+00:00\",\"dateModified\":\"2026-07-09T14:29:23+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\"},\"wordCount\":1385,\"commentCount\":0,\"articleSection\":[\"Bulletins\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/nationalcybersecuritysociety.org\/?p=209217#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\",\"url\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\",\"name\":\"CTW #27 \u2014 January 2026 - National Cybersecurity Society\",\"isPartOf\":{\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/#website\"},\"datePublished\":\"2026-02-02T15:30:13+00:00\",\"dateModified\":\"2026-07-09T14:29:23+00:00\",\"author\":{\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/#\/schema\/person\/a9516a6e5c3316345075c96273351c5f\"},\"breadcrumb\":{\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/nationalcybersecuritysociety.org\/?p=209217\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/?p=209217#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/nationalcybersecuritysociety.org\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"CTW #27 \u2014 January 2026\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/#website\",\"url\":\"https:\/\/nationalcybersecuritysociety.org\/\",\"name\":\"National Cybersecurity Society\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/nationalcybersecuritysociety.org\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/nationalcybersecuritysociety.org\/#\/schema\/person\/a9516a6e5c3316345075c96273351c5f\",\"name\":\"Mike Frising\",\"url\":\"https:\/\/nationalcybersecuritysociety.org\/?author=27\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"CTW #27 \u2014 January 2026 - National Cybersecurity Society","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/nationalcybersecuritysociety.org\/?p=209217","og_locale":"en_US","og_type":"article","og_title":"CTW #27 \u2014 January 2026 - National Cybersecurity Society","og_description":"Published: January 16, 2026 Our bulletin Cyber Threat Watch has been created to help small businesses stay up to date on the latest threats, news, and events affecting their business. The content has been curated to make cybersecurity easy and accessible for both technical and nontechnical readers.Many cybersecurity incidents may look different on the surface, [&hellip;]","og_url":"https:\/\/nationalcybersecuritysociety.org\/?p=209217","og_site_name":"National Cybersecurity Society","article_published_time":"2026-02-02T15:30:13+00:00","article_modified_time":"2026-07-09T14:29:23+00:00","author":"Mike Frising","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Mike Frising","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/nationalcybersecuritysociety.org\/?p=209217#article","isPartOf":{"@id":"https:\/\/nationalcybersecuritysociety.org\/?p=209217"},"author":{"name":"Mike Frising","@id":"https:\/\/nationalcybersecuritysociety.org\/#\/schema\/person\/a9516a6e5c3316345075c96273351c5f"},"headline":"CTW #27 \u2014 January 2026","datePublished":"2026-02-02T15:30:13+00:00","dateModified":"2026-07-09T14:29:23+00:00","mainEntityOfPage":{"@id":"https:\/\/nationalcybersecuritysociety.org\/?p=209217"},"wordCount":1385,"commentCount":0,"articleSection":["Bulletins"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/nationalcybersecuritysociety.org\/?p=209217#respond"]}]},{"@type":"WebPage","@id":"https:\/\/nationalcybersecuritysociety.org\/?p=209217","url":"https:\/\/nationalcybersecuritysociety.org\/?p=209217","name":"CTW #27 \u2014 January 2026 - National Cybersecurity Society","isPartOf":{"@id":"https:\/\/nationalcybersecuritysociety.org\/#website"},"datePublished":"2026-02-02T15:30:13+00:00","dateModified":"2026-07-09T14:29:23+00:00","author":{"@id":"https:\/\/nationalcybersecuritysociety.org\/#\/schema\/person\/a9516a6e5c3316345075c96273351c5f"},"breadcrumb":{"@id":"https:\/\/nationalcybersecuritysociety.org\/?p=209217#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/nationalcybersecuritysociety.org\/?p=209217"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/nationalcybersecuritysociety.org\/?p=209217#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/nationalcybersecuritysociety.org\/"},{"@type":"ListItem","position":2,"name":"CTW #27 \u2014 January 2026"}]},{"@type":"WebSite","@id":"https:\/\/nationalcybersecuritysociety.org\/#website","url":"https:\/\/nationalcybersecuritysociety.org\/","name":"National Cybersecurity Society","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/nationalcybersecuritysociety.org\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/nationalcybersecuritysociety.org\/#\/schema\/person\/a9516a6e5c3316345075c96273351c5f","name":"Mike Frising","url":"https:\/\/nationalcybersecuritysociety.org\/?author=27"}]}},"_links":{"self":[{"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=\/wp\/v2\/posts\/209217","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=\/wp\/v2\/users\/27"}],"replies":[{"embeddable":true,"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=209217"}],"version-history":[{"count":12,"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=\/wp\/v2\/posts\/209217\/revisions"}],"predecessor-version":[{"id":209340,"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=\/wp\/v2\/posts\/209217\/revisions\/209340"}],"wp:attachment":[{"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=209217"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=209217"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nationalcybersecuritysociety.org\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=209217"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}