RSS
Security Operations
Threat Research
active adversary
Active Adversary Report
Compromised Credentials
detection
dwell time
Featured
impact
incident response
LOLBIN
MFA
Monitoring
RDP
Remote Ransomware
root cause
It takes two: The 2025 Sophos Active Adversary Report
IR
LoLBINs
MDR
The Bite from Inside: The Sophos Active Adversary Report
Microsoft
Patch Tuesday
Windows
December Patch Tuesday arrives bearing 71 gifts
featured
Sophos X-Ops
RD Web Access abuse: Fighting back
Case Study
It’s Oh So Quiet (?): The Sophos Active Adversary Report for 1H 2024
Incident response tools
Remote Desktop Protocol: The Series
Remote Desktop Protocol: Exposed RDP (is dangerous)
Remote Desktop Protocol: Queries for Investigation
Remote Desktop Protocol: How to Use Time Zone Bias