RSS
SophosLabs Uncut
Threat Research
AnyDesk
Avos Locker
Avos2
featured
PDQ
PDQ Deploy
Ransomware
Rapid Response
Avos Locker remotely accesses boxes, even running in Safe Mode
Featured
Log4J
Log4shell
Inside the code: How the Log4Shell exploit works
CVE-2021-41333
CVE-2021-43207
CVE-2021-43226
CVE-2021-43233
CVE-2021-43883
Patch Tuesday
Microsoft wraps up 2021 with 64 patched vulnerabilities—including Windows 7 fixes
IPS
JNDI
LDAP
Log4Shell Hell: anatomy of an exploit outbreak
ESXi
Fcker
Python
VMware
Python ransomware script targets ESXi server for encryption
Atom Silo
LockFile
Atom Silo ransomware actors use Confluence exploit, DLL side-load for stealthy attack
ColdFusion
cring
Cring ransomware group exploits ancient ColdFusion server
ProxyShell
LockFile ransomware’s box of tricks: intermittent encryption and evasion
metasploit
NTLM
PetitPotam
ProxyLogon
How PetitPotam hijacks the Windows API, and what you can do about it