As a member of the National Council of ISACs, the RH-ISAC is the information sharing and analysis center for these important sectors – retail and hospitality.
In just over a month, Retail & Hospitality ISAC will be in Germany for a full-day cybersecurity workshop hosted by PUMA! There's still time to register and join us on 7 July: https://t.co/1XuGlstG5r
Connect with cybersecurity peers in person! Join us on 13 Aug for the RH-ISAC Regional Workshop in Louisville, KY hosted by Brown-Forman.
Eligible non-members are welcome. Space is limited to keep discussions interactive. Reserve your seat now:
https://t.co/K8EH7yFxPt
We are thrilled to be heading to the Boston area on 29 July for a Retail & Hospitality ISAC Workshop!
🗓️ When: 29 July | 9 a.m. - 5 p.m.
📍 Where: Marriott Boston Natick
💻 What: Presentations, Interactive Discussions, Threat Briefings, and Networking
✅ Registration: https://t.co/seoMQYoSvk
Want to learn more about joining the RH-ISAC? We're hosting a call on 10 June where you can ask questions and hear from a current member about their experience with the ISAC!
Register: https://t.co/URk2eVlGla
A new report details an ongoing Glassworm malware campaign targeting software developers through trusted development platforms, including npm, PyPI, OpenVSX, and GitHub. The campaign first surfaced in October 2025 through malicious Visual Studio Code and OpenVSX extensions and has since expanded into Python repositories, React Native npm packages, and AI-related development tooling. The campaign poses downstream risk due to a compromised developer workstation could expose connected repositories, cloud infrastructure, and organizational secrets.
https://t.co/aHT92ykLnT
We'll be doing a deep dive into bad bots and agentic AI on 8 June! Join us for a presentation with @Imperva to explore how modern bots are evolving and how to implement adaptive defenses.
More info and registration: https://t.co/ujk6DZhRix
The RH-ISAC globetrotting continues with our first-ever workshop in India! We'll be in Bangalore on 5 August for a full-day program. RH-ISAC members, along with eligible non-members (must work in cybersecurity for a consumer-facing company) are invited to attend!
More details and registration: https://t.co/iPWtSHexeh
How does the threat landscape in the retail and hospitality industry stack up against global cyber trends?
Each year, the RH-ISAC intel team cross-references our data with the findings of the annual Verizon Data Breach Investigation Report (DBIR). The 2026 report reveals where our community's experience aligns with global data and where it diverges.
Read the report: https://t.co/5ZhlXA3zh5
Headed to London for @Infosecurity next month? Join @Intel471Inc at a CTI and Threat Hunting networking event on 3 June at @heroicalounge! More info and registration:
https://t.co/rYw8GZ18MW
We’re headed to Toronto! 🇨🇦
Join RH-ISAC and @LoblawsON on 30 July for a full day of collaboration and real-world perspectives on the industry's top cybersecurity challenges. From interactive discussions to threat intel briefings, this is a great opportunity to connect, learn, and exchange ideas. And it’s free to attend!
Register: https://t.co/PNMBMcmCYD
#CyberCommunity
#Retail
#Hospitality
#CyberThreats
#Cybersecurity
Spots are filling up quickly for the Retail & Hospitality ISAC workshop in Singapore on 3 June! In collaboration with NRF 2026: Retail's Big Show Asia Pacific, this workshop will cover a range of topics with presentations on:
☑️ Building Resilient Cyber Operations to Survive the Evolving Threat Landscape
☑️ Cyber Risk Qualification for OT Systems
☑️ The APAC Retail Imperative: Navigating Risk, Technology, and Transformation
Register at https://t.co/K0NjubfxXM
Our latest blog post walks through what account fraud looked like in retail, QSR, airlines, and accommodation in Q1 2026, the macro forces shaping each industry, and the Q1 benchmarks behind the story, according to @kasada_io
https://t.co/rzwlcok6Wv
An active “ClickFix” campaign is targeting macOS users through fake utility and troubleshooting lures. The campaign uses deceptive prompts masquerading as system fixes or macOS utilities to trick users into manually executing malicious terminal commands.
https://t.co/VaGQvlrtxB
Join @Imperva on 21 May to learn how to identify and mitigate bot traffic, as well as bot attack simulation & defense strategies, the state of bots using AI, evasion tactics bots use, and key mitigation strategies. Register: https://t.co/riBIZXdyhm
For #WorldPasswordDay, @RHISAC is proud to support the updated Common Guidance on Passwords from @NonprofitCyber. Let's make the Internet a safer place for all. https://t.co/xi7lb1PWiA
Researchers reported that a North Korea-aligned threat group known as ScarCruft executed a supply chain attack against a video gaming platform serving ethnic Koreans in China’s Yanbian region.
https://t.co/nXI9UxyIBk
#Cybersecurity#SupplyChainAttack#ScarCruft
This practitioner's guide from @SentinelOne shows how to leverage Agentic AI for machine-speed triage and remediation while maintaining human-in-the-loop governance. https://t.co/06JwYWVzcf
#Cybersecurity#AgenticAI
Join Retail & Hospitality ISAC for our monthly threat briefing on 8 May, featuring @Cloudflare presenting a deep dive into Tycoon2FA’s AiTM tactics. The session will cover:
☑️ How the Tycoon2FA phishing‑as‑a‑service platform exploits reverse proxies to steal session tokens in real time
☑️ The full lifecycle of the kit, from Telegram distribution to stealthy evasion techniques
☑️ Why it’s become a go‑to tool for targeting high‑value credentials
☑️ Behind‑the‑scenes insights from the investigation that led to a global disruption of Tycoon2FA’s infrastructure
Register at: https://t.co/aBHD6uxZkA
#ThreatIntelligence #CyberThreats #RetailSecurity #HospitalitySecurity #Phishing #MFA #Cloudflare
The Annual Threat Report from @SentinelOne gives defenders a real-world playbook on how today’s adversaries abuse identity to move past MFA , exploit legacy edge blind spots, and weaponize automation. Learn how to strengthen defenses across all eight phases of a modern intrusion.
https://t.co/dVdsCgILJQ