<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Mandiant</title><description>Cybersecurity articles tagged #Mandiant on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Agentic Source Code Review: Scaling Vulnerability Discovery with AI</title><link>https://runtimerebel.com/blog/agentic-source-code-review-scaling-vulnerability-discovery-with-ai</link><guid isPermaLink="true">https://runtimerebel.com/blog/agentic-source-code-review-scaling-vulnerability-discovery-with-ai</guid><description>Learn how Google Mandiant uses the Agentic Vulnerability Discovery Harness to accelerate secure code review and find critical flaws at scale.</description><pubDate>Tue, 18 Aug 2026 16:25:17 GMT</pubDate><category>AI Security</category><category>Vulnerability Discovery</category><category>Mandiant</category><category>Code Review</category><category>Zero-Day</category></item><item><title>Google Unified Threat Actor Naming: TAG and Mandiant Convergence</title><link>https://runtimerebel.com/blog/google-unified-threat-actor-naming-tag-and-mandiant-convergence</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-unified-threat-actor-naming-tag-and-mandiant-convergence</guid><description>Google unifies threat actor naming across TAG and Mandiant to streamline attribution and improve intelligence sharing for security operations teams.</description><pubDate>Tue, 28 Jul 2026 10:39:08 GMT</pubDate><category>Google TAG</category><category>Mandiant</category><category>Threat Attribution</category><category>APT</category><category>Cybersecurity Standards</category></item><item><title>Google Threat Intel Adopts Unified Cryptonym Naming for Actors</title><link>https://runtimerebel.com/blog/google-threat-intel-adopts-unified-cryptonym-naming-for-actors</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-threat-intel-adopts-unified-cryptonym-naming-for-actors</guid><description>Google Threat Intelligence Group (GTIG) rolls out a new two-word cryptonym-based naming schema for threat actors, standardizing tracking across platforms for enhanced…</description><pubDate>Fri, 24 Jul 2026 13:55:00 GMT</pubDate><category>Google Threat Intelligence</category><category>Threat Actor Naming</category><category>Mandiant</category><category>TAG</category><category>Cryptonym</category><category>Threat Tracking</category></item><item><title>Google Cloud Agentic Defense: Automating AI-Driven Security Response</title><link>https://runtimerebel.com/blog/google-cloud-agentic-defense-automating-ai-driven-security-response</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-cloud-agentic-defense-automating-ai-driven-security-response</guid><description>Google Cloud integrates Wiz and Mandiant capabilities into its new Agentic Defense model, using AI agents to automate complex threat detection workflows.</description><pubDate>Fri, 17 Jul 2026 13:54:38 GMT</pubDate><category>Google Cloud</category><category>AI Security</category><category>Wiz</category><category>Agentic Defense</category><category>Mandiant</category></item><item><title>AI-Assisted Vulnerability Management: Operational Guardrails &amp; Risks</title><link>https://runtimerebel.com/blog/ai-assisted-vulnerability-management-operational-guardrails-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-assisted-vulnerability-management-operational-guardrails-risks</guid><description>Implement robust guardrails for AI-assisted vulnerability management. Learn to safely deploy LLM agents, reduce architectural risks, and prioritize human-led threat…</description><pubDate>Thu, 16 Jul 2026 17:25:07 GMT</pubDate><category>AI</category><category>LLM</category><category>Vulnerability Management</category><category>SAIF</category><category>NIST AI RMF</category><category>OWASP Top 10 for LLMs</category><category>Mandiant</category><category>Risk Based Vulnerability Management</category><category>Zero Trust</category><category>Software Supply Chain</category><category>SAST</category><category>DAST</category><category>Red Teaming</category></item><item><title>Exposed Cloud Functions: Hardening GCP Serverless Against LFI &amp; RCE</title><link>https://runtimerebel.com/blog/exposed-cloud-functions-hardening-gcp-serverless-against-lfi-rce</link><guid isPermaLink="true">https://runtimerebel.com/blog/exposed-cloud-functions-hardening-gcp-serverless-against-lfi-rce</guid><description>Mandiant identifies exposed serverless functions as initial access points. Learn to harden Google Cloud Run against LFI and RCE with IAM, WAF, and secure SDLC.</description><pubDate>Wed, 15 Jul 2026 17:23:18 GMT</pubDate><category>Google Cloud</category><category>Cloud Run</category><category>Serverless</category><category>LFI</category><category>Command Injection</category><category>RCE</category><category>WAF</category><category>Cloud Armor</category><category>IAM</category><category>Mandiant</category><category>Cloud Security Posture Management</category></item><item><title>Cisco Catalyst SD-WAN CVE-2026-20245 Root Access Exploit Analysis</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-cve-2026-20245-root-access-exploit-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-cve-2026-20245-root-access-exploit-analysis</guid><description>Exploitation of Cisco Catalyst SD-WAN zero-day CVE-2026-20245 allows root access. Mandiant reveals active abuse months prior to the June 2026 disclosure.</description><pubDate>Thu, 25 Jun 2026 09:13:27 GMT</pubDate><category>CVE-2026-20245</category><category>Cisco</category><category>SD WAN</category><category>Zero-Day</category><category>Mandiant</category><category>Privilege Escalation</category></item><item><title>UNC3753: Vishing and Physical Intrusions Fuel U.S. Data Extortion</title><link>https://runtimerebel.com/blog/unc3753-vishing-and-physical-intrusions-fuel-u-s-data-extortion</link><guid isPermaLink="true">https://runtimerebel.com/blog/unc3753-vishing-and-physical-intrusions-fuel-u-s-data-extortion</guid><description>Mandiant identifies UNC3753 targeting U.S. legal and financial sectors through sophisticated vishing and physical breaches to execute data theft extortion.</description><pubDate>Mon, 08 Jun 2026 09:43:30 GMT</pubDate><category>UNC3753</category><category>Vishing</category><category>Physical Security</category><category>Mandiant</category><category>Data Extortion</category><category>Financial Sector</category></item><item><title>Anthropic Mythos Preview Exploits OS Zero-Days: Addressing the Response Gap</title><link>https://runtimerebel.com/blog/anthropic-mythos-preview-exploits-os-zero-days-addressing-the-response-gap</link><guid isPermaLink="true">https://runtimerebel.com/blog/anthropic-mythos-preview-exploits-os-zero-days-addressing-the-response-gap</guid><description>Anthropic restricts Mythos Preview after it autonomously exploits OS zero-days. Learn how to minimize post-alert gaps as breakout times drop to 29 minutes.</description><pubDate>Mon, 13 Apr 2026 12:31:23 GMT</pubDate><category>Anthropic</category><category>Mythos Preview</category><category>Zero-Day</category><category>Vulnerability Discovery</category><category>CrowdStrike</category><category>Mandiant</category></item><item><title>BRICKSTORM Malware: Hardening vSphere &amp; VCSA Against Advanced Threats</title><link>https://runtimerebel.com/blog/brickstorm-malware-hardening-vsphere-vcsa-against-advanced-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/brickstorm-malware-hardening-vsphere-vcsa-against-advanced-threats</guid><description>Defend VMware vSphere and VCSA against BRICKSTORM malware. Learn hardening strategies, identity management, Zero Trust networking, and advanced logging to thwart…</description><pubDate>Thu, 02 Apr 2026 16:29:31 GMT</pubDate><category>BRICKSTORM</category><category>vSphere</category><category>VCSA</category><category>ESXi</category><category>VMware</category><category>Photon OS</category><category>Hardening</category><category>Virtualization</category><category>TTPs</category><category>Ransomware</category><category>Espionage</category><category>CVE-2021-21972</category><category>Mandiant</category></item><item><title>Mandiant M-Trends 2026: Handoff Time Shrinks to 22 Seconds</title><link>https://runtimerebel.com/blog/mandiant-m-trends-2026-handoff-time-shrinks-to-22-seconds</link><guid isPermaLink="true">https://runtimerebel.com/blog/mandiant-m-trends-2026-handoff-time-shrinks-to-22-seconds</guid><description>Mandiant&apos;s M-Trends 2026 report reveals a drastic reduction in initial access handoff times to 22 seconds, demanding faster detection and response.</description><pubDate>Mon, 23 Mar 2026 16:26:17 GMT</pubDate><category>Mandiant</category><category>M Trends 2026</category><category>Initial Access Brokers</category><category>Dwell Time</category><category>Ransomware</category></item><item><title>Chinese Cyberspies Exploit SaaS APIs in Global Espionage Campaign</title><link>https://runtimerebel.com/blog/chinese-cyberspies-exploit-saas-apis-in-global-espionage-campaign</link><guid isPermaLink="true">https://runtimerebel.com/blog/chinese-cyberspies-exploit-saas-apis-in-global-espionage-campaign</guid><description>A suspected Chinese threat actor breached dozens of telecom firms and government agencies, using SaaS API calls to evade detection in a global espionage campaign.</description><pubDate>Wed, 25 Feb 2026 20:16:16 GMT</pubDate><category>Chinese Threat Actor</category><category>Espionage</category><category>SaaS API Abuse</category><category>Telecom</category><category>Government</category><category>Mandiant</category><category>Google GTIG</category></item><item><title>Google Disrupts Chinese Espionage Actor UNC2814 Targeting Telecoms</title><link>https://runtimerebel.com/blog/google-disrupts-chinese-espionage-actor-unc2814-targeting-telecoms</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-disrupts-chinese-espionage-actor-unc2814-targeting-telecoms</guid><description>Google and Mandiant disrupt UNC2814, a Chinese state-sponsored actor active since 2017, targeting 42 countries across telecom and government sectors.</description><pubDate>Wed, 25 Feb 2026 16:34:10 GMT</pubDate><category>UNC2814</category><category>China</category><category>Cyber Espionage</category><category>Google TAG</category><category>Mandiant</category><category>Telecommunications</category><category>State Sponsored</category></item></channel></rss>