RSS
Threat Research
MacOS
infostealer
clickfix
MacSync
Social engineering
Evil evolution: ClickFix and macOS infostealers
Across three recent campaigns, Sophos X-Ops notes shifts in both lures and malware capabilities, as threat actors leveraging ClickFix techniques increasingly target macOS users with infostealers
Security Operations
ctu
Democratic People’s Republic of Korea
employment scam
Featured
fraud
nickel tapestry
North Korea
NICKEL TAPESTRY expands fraudulent worker operations
AI
ChatGPT
Cybercrime Forums
scams
Sophos X-Ops
Update: Cybercriminals still not fully on board the AI train (yet)
AnyDesk
incident response
mad liberator
malware
Don’t get Mad, get wise
Hotel
malspam
RH-ISAC
Spam
Telegram
“Inhospitality” malspam campaign targets hotel industry
Defcon
Electron
image spam
Notepad++
socat
Tor
War Stories
Attacker combines phone, email lures into believable, complex attack chain
Naked Security
breach
Coinbase
Crypto
MDR.
XDR
Coinbase breached by social engineers, employee data stolen
bust
Interpol
scamming
Interpol busts 2000 suspects in phone scamming takedown
Caller ID
CLI
phone scammers
pretexting
scammers
SEC
US government securities watchdog spoofed by investment scammers – don’t fall for it!
Evolve
hacking
Sophos Evolve
threat response
How to do cybersecurity – join us online for the Sophos Evolve event