RSS
Security Operations
Threat Research
Black Basta
featured
Fin7
Java malware
legitimate service abuse
Microsoft Office 365
python malware
Quick Assist
remote machine management
Sophos X-Ops
STAC5143
stac5777
Teams
Sophos MDR tracks two ransomware campaigns using “email bombing,” Microsoft Teams “vishing”
CloudFlare
Featured
FlowerStorm
Phishing
phishing-as-a-service
Rockstar
Rockstar2FA
Sophos MDR
Phishing platform Rockstar 2FA trips, and “FlowerStorm” picks up the pieces
Atera
MDR.
MuddyWater
RMM
STAC 1171
TA450
Sophos MDR blocks and tracks activity from probable Iranian state actor “MuddyWater”
exfiltration
Google Forms
Telegram
TLS
Phishing and malware actors abuse Google Forms for credentials, data exfiltration