top of page

The STORM Guidance blog
Cybersecurity insights and guidance
Speak with a cybersecurity specialist
Contact the team at STORM Guidance:
UK/Europe: +44-203-693-7480
Africa: +230-434-1277
India: 0008001004277
USA: +1-703-232-9015
Your contact details will only be used in connection with this enquiry.
Please read our Privacy Policy.


Why Cyber Investment Still Feels Like Guesswork
In my previous paper, I asked a deceptively simple question: How much cybersecurity is enough? It's a question that Boards, CEOs, CFOs and CISOs have wrestled with for decades. Yet despite the enormous progress made in cybersecurity, many organisations still struggle to justify their cyber investment decisions with confidence. Why? It certainly isn't because our profession lacks knowledge. Today we have more cybersecurity standards, frameworks, methodologies and guidance than
3 min read


How Much Cybersecurity Is Enough?
Twenty years ago, I had the privilege of working with the eminent Jack Jones during the early development of the FAIR cyber risk quantification methodology. At the time, I was working on risk modelling and the inspirational Chris Carlson, then Head of Cyber Risk at Boeing, who knew of my work, graciously put me in touch with Jack. I flew to Columbus, Ohio One day, Jack told me the story that ultimately led him to develop FAIR. He had been dis cussing the need to purchase a ne
3 min read


Cyber Controls, Operational Resilience and Board Accountability
Cyber risk is no longer just an IT issue. For Management Companies, weak controls can quickly become failures in governance, operational resilience and client protection.
3 min read


Cyber Resilience Leadership Forum 2026: Key outcomes and highlights
On 2 April 2026, STORM Guidance hosted the inaugural Cyber Resilience Leadership Forum (CRLF 2026) in Moka, Mauritius. With TrendAI and FRCI, the forum convened executives, regulators and specialists to reinforce one truth: cyber resilience is defined by leadership decisions before, during and after an incident.
2 min read


CRLF 2026 in the press: building executive cyber resilience in Mauritius
Ahead of the inaugural CRLF 2026, STORM Guidance has been featured across leading Mauritian business and news titles, highlighting why cyber resilience is now a board-level priority for Mauritius.
1 min read
Cisco Catalyst SD-WAN Exploited: What Businesses Should Know
A detailed look at how M&S and Co-op responded to cyberattacks — what businesses can learn, what could have gone wrong, and what affected customers should do.
5 min read


Cyber Risk in 2026: From Technical Attacks to Systemic Failure
Cybercrime in 2026 won’t hinge on a single new exploit—it will look like systemic business failure. Expect multi-vector extortion, AI-powered deception that targets processes, widening OT/IoT exposure, underperforming government efforts, and a softening insurance market. The difference maker isn’t tooling—it’s governance, accountability, and real resilience.
5 min read


Systemic Incident Analysis: Case #1 - Salesforce
A systemic incident analysis of a Salesforce disruption: causes, impact, controls, and lessons learned. Practical actions for operational resilience and third-party risk.
4 min read


Interface Risk - The Overlooked Frontier in Cybersecurity
Interfaces connect systems, teams and suppliers - and often expose unseen risk. Learn how to identify, assess and control interface risk to strengthen cyber resilience.
3 min read


M&S vs Co-op Cyberattacks: What Their Responses Teach Us About Handling Breaches of
A detailed look at how M&S and Co-op responded to cyberattacks — what businesses can learn, what could have gone wrong, and what affected customers should do.
4 min read
How Cybercriminals Use Google Search to Lure Victims
Attackers are manipulating Google search to trick users into downloading malware. Learn how SEO poisoning works and how to stay protected.
3 min read
What Is Cobalt Strike and Why Attackers Use It in Cyber Attacks
Cobalt Strike is a powerful post-exploitation tool used by attackers. Learn how it works, and how to detect and defend against it.
3 min read
What Is Malvertising? How Ad-Based Malware Is Hitting Businesses
Cybercriminals are using online ads to deliver malware to businesses. Learn how malvertising works and how to defend against it.
3 min read
How Threat Actors Use Fake Software Updates to Infect Businesses
Cybercriminals are using fake browser and software updates to spread malware. Learn how these attacks work and how to protect your business.
3 min read
Living Off the Land (LOTL) Attacks: Real-World Examples and How to Detect Them
Explore real-world examples of LOTL attacks and learn practical detection tips to help your business spot stealthy cyber threats before damage is done.
3 min read
What Is Initial Access Brokering? Understanding the Cybercrime Trade
Learn how initial access brokers sell entry into business systems, the risks they pose, and how your company can defend against this growing threat.
3 min read
LinkedIn Impersonation Scams Target Executives: What You Need to Know
credential stuffing, account takeover prevention, business login attacks, cyber defence, threat intelligence, STORM Guidance, password security, identity protection, cyber attack mitigation
3 min read
How Credential Stuffing Attacks Work (And How to Defend)
credential stuffing, account takeover prevention, business login attacks, cyber defence, threat intelligence, STORM Guidance, password security, identity protection, cyber attack mitigation
3 min read
Fake Browser Updates and Drive-By Malware: The New Threats Businesses Face
Learn how fake Chrome and browser updates are tricking employees into installing malware — and how your business can defend against drive-by attacks.
3 min read
Living Off the Land (LOTL) Attacks: How Hackers Use Legitimate Tools
Learn how cybercriminals use trusted system tools to hide attacks, avoid detection, and move across networks — and how to defend your business.
3 min read
bottom of page