Cybersecurity · Newsletter guide
The best Cybersecurity newsletters
Cybersecurity newsletters, ranked. Our editorial team curates and orders this list by hand: the top picks below are the ones we'd subscribe to first, followed by the full directory of everything we track in this category.
Ranked by the Hark News editorial team: every newsletter here is verified against its live signup page (publisher, cadence, pricing), and the order reflects our hand-curated ranking, not raw subscriber counts.
Hark's top 10 Cybersecurity newsletters
Hand-ranked by the Hark News editorial team. Every one is free to read (or has a real free tier).
TLDR InfoSec
TLDR InfoSec compresses the day's security news, vulnerabilities, and tooling into bullet summaries you can clear in minutes. It follows the TLDR formula: no analysis, maximum scan speed. A fast baseline feed for busy security teams.
Crypto-Gram
Bruce Schneier has published Crypto-Gram monthly since 1998, collecting his essays on security, technology, and society. He remains the field's most cited public intellectual, and the analysis ages unusually well. The longest-running institution in security writing.
SANS NewsBites
SANS NewsBites lands twice a week with an executive summary of the top security stories, each annotated with short commentary from SANS instructors and veteran practitioners. The editorial notes are the draw: experienced people telling you why an item matters. A fixture in security teams for decades.
Unsupervised Learning
Daniel Miessler's Unsupervised Learning sits at the intersection of security, AI, and society, mixing curated links with original essays and frameworks. He has been synthesizing the field for two decades. Read by CISOs and builders who want ideas, not just headlines.
CyberWire Daily Briefing
N2K's CyberWire Daily Briefing summarizes the day's cyber news in a crisp, neutral, almost wire-service style, with links to primary sources. It is one of the most established daily reads in the industry. Reliable, unopinionated coverage for professionals.
tl;dr sec
Clint Gibler, head of security research at Semgrep, curates each week's best security tools, conference talks, and research with genuinely useful summaries. It has become the reference reading list for practitioners. If it matters in AppSec or cloud security, it shows up here.
Vulnerable U
Matt Johansen, a longtime security leader, breaks down the week's breaches, vulnerabilities, and security news with a hacker's candor and an unusual willingness to talk about the human side of the job. Practical, personable, and a favorite among practitioners for its voice.
Resilient Cyber
Chris Hughes, a CISO, author, and advisor, goes deep on vulnerability management, software supply chain risk, AppSec, and security leadership each week. The analysis is long-form and sourced, aimed at people who own these problems. Depth over headlines, consistently.
Venture in Security
Ross Haleliuk writes long-form essays on how the cybersecurity industry actually works: its economics, go-to-market motions, and investment dynamics. His book Cyber for Builders extends the project. Standard reading for security founders, investors, and product leaders.
More Cybersecurity newsletters
The rest of our catalog for this category, in our ranked order.
Detection Engineering Weekly
Zack Allen curates the week's best detection engineering and threat hunting content: rules, research, tooling, and hard-won practitioner notes. It is narrow on purpose and better for it. The community bulletin board for blue teamers.
The Info Op
The Grugq has been an operational security legend for decades, and his dispatches on hacking culture, intelligence tradecraft, and information warfare carry dry wit and real tradecraft knowledge. Irregular, idiosyncratic, and unlike anything else in the field.
Cyber Daily (Recorded Future News)
Recorded Future News, the editorially independent newsroom behind The Record, staffs real reporters on cybercrime, nation-state hacking, and cyber policy. The weekday Cyber Daily newsletter delivers their original reporting, not aggregation. One of the strongest free sources of security journalism.
Krebs on Security
Brian Krebs sets the standard for cybercrime investigation, unmasking ransomware operators, breach culprits, and the underground economy from an independent perch. Stories arrive by email as they publish. When Krebs posts, the industry reads it.
Metacurity
Cynthia Brumfield, a veteran infosec analyst, curates the stories that matter each weekday morning with short summaries and links, cutting the vendor noise. It is a clean, human-filtered alternative to algorithmic security feeds. Best-of-infosec curation in five minutes.
OUCH!
SANS publishes OUCH! monthly as a security-awareness letter for regular people, covering one habit at a time in plain language across multiple translations. It is built to be forwarded to your family or your whole company. The rare security newsletter for non-practitioners.
Return on Security (Security, Funded)
Mike Privette tracks the business of cybersecurity: every funding round, acquisition, and market trend, turned into readable weekly analysis. It is the industry's de facto deal sheet. Essential for founders, investors, and anyone selling security.
Risky Bulletin (Risky Business News)
Catalin Cimpanu, one of the most prolific reporters in security journalism, compiles the field's most comprehensive news digest three times a week for Risky Business Media. Coverage spans cybercrime, APTs, policy, and research with terse expert framing. Many practitioners call it the only security digest they need.
Seriously Risky Business
Tom Uren, a veteran of Australian signals intelligence, analyzes the week's big-picture forces in cyber policy, espionage, and statecraft for Risky Business Media. It is strategic analysis rather than news volume. The best short read on how states actually use hacking.
Strategy of Security
Cole Grolmus left a security engineering and analyst career to write business-school-grade analysis of the cybersecurity industry itself: its companies, markets, and ecosystems. Essays are long, structured, and genuinely strategic. For people who think about security as an industry, not just a practice.
Zero Day
Kim Zetter wrote Countdown to Zero Day, the definitive Stuxnet book, and brings the same investigative depth to her newsletter on hackers, spies, and the collision of cybersecurity with national security. Stories arrive when they are ready rather than on a schedule. Some of the best long-form security journalism anywhere.
~this week in security~
Zack Whittaker, TechCrunch's security editor, rounds up the week's security news every Sunday with sharp, wry commentary and a cyber-cat photo at the end. It is quick, opinionated, and reliably curated by someone who reports the beat all week.
Hark’s recommended bundles
Starter sets. Tap one and those newsletters are pre-picked when you build your newscast; you can add or drop any of them.
- Start with this bundle
Cybersecurity starter
Frequently asked
- What is the best cybersecurity newsletter?
- Our top pick is TLDR InfoSec from TLDR. The full ranking above lists every cybersecurity newsletter we recommend, in order.
- Are these newsletters free?
- Every newsletter in the main ranking is free to read or has a real free tier. Paid-only newsletters are listed separately in the paid recommendations section.
Last updated: August 2026