RSS
Threat Research
Ransomware
cybercrime
state-sponsored ransomware
victimization
Eeny, meeny, miny, moe? How ransomware operators choose victims
January 28, 2026
clickfix
Featured
GOLD FEATHER
human verification
infostealer
qilin
StealC
I am not a robot: ClickFix used to deploy StealC and Qilin
December 18, 2025
virtual machine
ISPs
Malicious use of virtual machine infrastructure
February 4, 2026
Microsoft Office
vulnerability
advisory
Microsoft Office vulnerability (CVE-2026-21509) in active exploitation
January 27, 2026
TamperedChef
EvilAI
Sophos X-Ops
TamperedChef serves bad ads, with infostealers as the main course
January 16, 2026
Hive
Lockbit
BlackCat
LLM
AI
Money Laundering
Laughter in the dark: Tales of absurdity from the cyber frontline and what they taught us
January 13, 2026
ATT&CK
Emulation
MITRE
MUSTANG PANDA
scattered spider
Game of clones: Sophos and The MITRE ATT&CK Enterprise 2025 Evaluations
December 15, 2025
EDR killer
featured
packer
shanya
SophosLabs
Inside Shanya, a packer-as-a-service fueling modern attacks
December 6, 2025
Canada
GOLD BLADE
QWCrypt
recruitment platforms
RedLoader
STAC6565
Sharpening the knife: GOLD BLADE’s strategic evolution
December 5, 2025
Astaroth
Brazil
Guildma
WhatsApp
worm
WhatsApp compromise leads to Astaroth deployment
November 20, 2025
Adobe
Microsoft
nuance
Patch Tuesday
November Patch Tuesday does its chores
November 12, 2025