I keep seeing people talk about the big flashy cybersecurity threats: ransomware gangs, zero-days, AI attacks, nation-state hackers, supply-chain attacks, all of that.
And yeah, that stuff matters.
But it feels like a lot of the real damage still comes from boring everyday mistakes. Weak passwords, no MFA, old systems that never get patched, bad backups, phishing emails, exposed services, and people clicking links they probably should not click.
So what do you think people still underestimate the most?
Is it phishing? Bad patching? Cloud mistakes? Users? Companies being cheap? Something else?
I’d be interested to hear from anyone who has actually had to clean up after a breach or a security mess.
KiltedTuxPlaid, penguins, and shell scripts.