RSS
Threat Research
Adobe ColdFusion
cryptominers
featured
LockBit Ransomware
LoLBINs
Sophos X-Ops
Ransomware actor exploits unsupported ColdFusion servers—but comes away empty-handed
October 19, 2023
Security Operations
AnyDesk
Mega
mimikatz
Ransomware
RDP Brute Forcer
RDP Multi Tool
ScreenConnect
Attackers linger on government agency computers before deploying Lockbit ransomware
April 12, 2022
Avaddon
Clop ransomware
Conti
DarkSide
Egregor
Featured
Maze ransomware
Ragnar Locker ransomware
REvil
Sophos Rapid Response
The Top 10 Ways Ransomware Operators Ramp Up the Pressure to Pay
October 28, 2021
BlackMatter
Encryption
BlackMatter ransomware emerges from the shadow of DarkSide
August 9, 2021
SophosLabs Uncut
Attack Tools
Defense evasion
Malicious Google documents
Powershell
Powershell Empire
LockBit uses automated attack tools to identify tasty targets
October 21, 2020
data breach
exfiltration
I/O Completion Ports
IOCP
UAC Bypass
User Account Control
LockBit ransomware borrows tricks to keep up with REvil and Maze
April 24, 2020