Cybersecurity

Troy Hunt: Weekly Update 449

Today, I arrived at my PC first thing in the morning to...

Qilin affiliates spear-phish MSP ScreenConnect admin, targeting customers downstream – Sophos News

Late in January 2025, a Managed Service Provider (MSP) administrator received a well-crafted phishing email containing what appeared to be an authentication alert for...

ToyMaker Uses LAGTOY to Sell Access to CACTUS Ransomware Gangs for Double Extortion

Apr 26, 2025Ravie LakshmananMalware / Vulnerability Cybersecurity researchers have detailed the activities of an initial access broker (IAB) dubbed ToyMaker that has been observed handing...

Cybercrime on Main Street 2025 – Sophos News

Small businesses are a prime target for cybercrime, as we highlighted in our last annual report. Many of the criminal threats we covered in...

Lazarus APT updates its toolset in watering hole attacks

We have been tracking the latest attack campaign by the Lazarus group since last November, as it targeted organizations in South Korea with a...

Honeypot Iptables Maintenance and DShield-SIEM Logging

In the last week I ran into some issues that I hadn't anticipated: Residential IP changed, some honeypots inacessible remotely Rebuilit DShield-SIEM , Zeek logs not...

An AI is the best computer programmer in the world • Graham Cluley

In episode 47 of The AI Fix, o3 becomes the best competitive programmer in the world,...

The Pig Butcher – Darknet Diaries

Full Transcript The #1 crime which results in the biggest financial loss is BEC fraud. The #2 crime is pig butchering....

Look out! CapCut copycats are on the prowl

Cybercriminals lure content creators with promises of cutting-edge AI wizardry, only to...

Weekly Update 447

I'm home! Well, for a day, then it's off to the other side of the country (which I just flew over last night on...

Moving CVEs past one-nation control – Sophos News

Sometimes you don’t know how much you will miss something until you (almost) lose it. That is certainly the case with the news on...

Mustang Panda Targets Myanmar With StarProxy, EDR Bypass, and TONESHELL Updates

The China-linked threat actor known as Mustang Panda has been attributed to a cyber attack targeting an unspecified organization in Myanmar with previously unreported...

Recent articles