RSS
Threat Research
Brazil
coyote
featured
infostealer
Powershell
selenium
WhatsApp
worm
WhatsApp Worm Targets Brazilian Banking Customers
October 10, 2025
Security Operations
atlassian
Cerber
confluence
CryptoGuard
cve-2022-26134
Intercept X
Ransomware
Sophos Managed Threat Response (MTR)
Tomcat
webshell
Confluence exploits used to drop ransomware on vulnerable servers
June 16, 2022
cobalt strike
Cryptomining
cve-2017-11317
cve-2017-11357
cve-2019-18935
Featured
Sophos X-Ops
SophosLabs Uncut
telerik
XMRig
Telerik UI exploitation leads to cryptominer, Cobalt Strike infections
June 15, 2022
4104
forensics
Reconstructing PowerShell scripts from multiple Windows event logs
March 29, 2022
AnyDesk
DISM
DismCore.dll
Midas
network
Rapid Response
TeamViewer
Windows services lay the groundwork for a Midas ransomware attack
January 25, 2022
Epsilon Red
EpsilonRed
Exchange
ProxyLogon
WMI
A new ransomware enters the fray: Epsilon Red
May 28, 2021
Attack Tools
Defense evasion
LockBit Ransomware
Malicious Google documents
Powershell Empire
LockBit uses automated attack tools to identify tasty targets
October 21, 2020
Products & Services
Coldlock
fileless
Stop ColdLock ransomware with Intercept X
May 11, 2020
Empire
evasion
hercules
hydra thc
kali
koadic
metasploit
nishang
Phantom
shelter
thefatrat
veilevasion
How I learned to stop worrying and love ‘grey hat’ tools
February 25, 2020