vulnerabilities

Multiple Attackers: A Clear and Present Danger

Competition has always been fierce among cryptominers and RATs, but ransomware bucks the trend. Since their inception, the Sophos Managed Detection and Response (MDR) and Rapid Response (RR) teams have been called in to investigate hundreds of ransomware incidents, including intervening in active attacks where the attackers were still on the target’s network. In recent

Multiple Attackers: A Clear and Present Danger Read More »

The Ransomware Ecosystem

At the RSA Conference in 2020, Joel DeCapua, a supervisory special agent with the Federal Bureau of Investigation (FBI), revealed that ransomware groups had collectively earned over $144 million from 2013 through 2019, which was considered a staggering number at the time. However, in 2020 alone, ransomware groups reportedly earned $692 million from their collective

The Ransomware Ecosystem Read More »

Q1 2022 Threat Landscape: Threat Actors Target Email for Access and Extortion

In Q1 2022, Kroll observed a 54% increase in phishing attacks being used for initial access in comparison with Q4 2021. Email compromise and ransomware were the two most common threat incident types, highlighting the integral part played by end users in the intrusion lifecycle. Kroll continues to observe widely-publicized vulnerabilities such as ProxyShell and

Q1 2022 Threat Landscape: Threat Actors Target Email for Access and Extortion Read More »

2022 Ransomware Trends Report

In January 2022 an independent research firm surveyed over 1,000 unbiased IT leaders about the impact that ransomware had on their environments, as well as what their IT strategies and data protection initiatives are moving forward. Respondents came from organizations of all sizes from over 16 different countries across APJ, EMEA and the Americas. All

2022 Ransomware Trends Report Read More »

2022 Voice of the CISO

The Year Cybersecurity Went Prime Time As high-profile attacks disrupted supply chains, made headlines and prompted new cybersecurity legislation, 2021 proved to be another challenging time for CISOs around the world. DarkSide’s ransomware attack on Colonial Pipeline shut down fuel supplies for much of the U.S. East Coast. The Conti group brought Ireland’s health service

2022 Voice of the CISO Read More »

ASEAN MSPs are Key to Customers’ Data Protection

The Association of Southeast Asian Nations (ASEAN), like other regions, has seen a large increase in threat activity aimed at Managed Service Providers (MSPs) as cyber-criminals exploit vulnerabilities in infrastructure, software and processes to access and compromise sensitive customer data. Public regulations and private cyber-insurance requirements will be among the key drivers for raising IT

ASEAN MSPs are Key to Customers’ Data Protection Read More »

Fake e-shops on the prowl for banking credentials using android malware

ESET researchers analyzed three malicious applications targeting customers of eight Malaysian banks The popularity of online shopping has been growing during the past few years, a trend accelerated by the pandemic. To make this already convenient way of never having to leave the couch to buy new things even more convenient, people are increasingly using

Fake e-shops on the prowl for banking credentials using android malware Read More »

The State of Developer-Driven Security Survey

The Secure Code Warrior ‘State of Developer-Driven Security’ survey was conducted by Evans Data Corp in December of 2021. Questions about software coding, security awareness, training, support, motivations, and other issues were asked of 1,200 active software developers working in the Asia-Pacific region, Europe and North America. The survey was given in English and translated

The State of Developer-Driven Security Survey Read More »