The watch-word for the SendGrid breach is “interdependence”. In the online world, we may think we’re dealing with one company, but we’re actually dealing with them and with every other company they choose to deal with. This makes an ever-widening attack surface. (The breaking news about the Chinese “Great Cannon” software shows similar patterns.) These days, if you visit a website, you can be confident you are actually talking to a huge variety of other organizations who may provide ads, services, traffic monitoring, or any other legitimate services. One recent study of a popular news site showed that reading a simple news story meant your browser spoke to 38 distinct hosts, spread across no less than 20 different organizational domains! The problem is that this array of services is very large, and a chain is only as strong as its weakest link. Attackers only need to find one weak point to start an attack.
What SendGrid can teach us about dependency
- Tags: Breach, Mike Lloyd, Thought Leadership
Share this entry
Recent Posts
From Reactive to Resilient: How 2025’s Cybersecurity Evolution Redefines Defense for 2026
Exposure Management in 2025: Meeting the Moment
The Auto Industry’s Invisible Crisis: Why Exposure Management Can’t Wait
Drowning in Vulnerabilities? Here’s How to Finally Know What to Fix First
RedSeal recognized in the 2025 Gartner® Magic Quadrant™ for Exposure Assessment Platforms: A Strong Position in a Rapidly Expanding Market

