RSS
Threat Research
STAC6405
infostealer
RMM
Phishing
Incident responders, s'il vous plait: Invites lead to odd malware events
A phishing campaign targeting multiple organizations led to RMM installations – but not much else (yet). A threat actor experimenting, or an access-as-a-service attack underway?
Security Operations
adversary in the middle
Featured
MFA
MFA phishing
qilin
ScreenConnect
Sophos X-Ops
supply chain compromise
Qilin affiliates spear-phish MSP ScreenConnect admin, targeting customers downstream
Atera
legitimate service abuse
MDR
MuddyWater
STAC 1171
TA450
Sophos MDR blocks and tracks activity from probable Iranian state actor “MuddyWater”
Products & Services
Cyber Insurance
MSP
PSA
research
MSP Perspectives 2024 Report