
This week's Threat Intel news:Microsoft scrambles to register autodiscover domains exploited in flaw it was warned of years ago.The Conti ransomware gang target new recruits with specific backup destruction experience.FoggyWeb malware attributed to the group behind the infamous Solarwinds attack.
Oct 1, 2021
6 min

In this week's episode:OS compatibility features abused to stealthily deliver malware.VMware notifies customers of particularly concerning vulnerability prior to disclosureUS government poised to sanction Crypto exchanges which have dealt with cyber criminals
Sep 24, 2021
5 min

This week's Threat Intel news in just 7 minutes:The recent Apple hackDark web forum Marketo making a name for themselvesUpdate on recent ransomware activity
Sep 17, 2021
7 min

This week's Threat Intel news in 6 minutes:New malware technique observed using CLFS log files to evade detection.REvil returns after 2 months of hiding, attacks UK based ITSP with DDoS attacks.Babuk source code leaked by ransomware developer dying due to stage 4 lung cancer.
Sep 10, 2021
5 min

This week's Threat Intel news in 7 minutes:Lockfile ransomware utilises intermittent file encryption to bypass defences.Microsoft exchange flaw can enable remote theft of entire mailbox.BazaLoader uses fake DMCA takedown and DDoS notices as lures to deliver malware.
Sep 3, 2021
7 min

This week's Threat Intel news in 7 minutes:Details emerge on Fin8’s newly developed backdoorRazer products allow alarmingly easy local privilege escalationProxyshell attacks on the rise despite patch issued months ago
Aug 27, 2021
7 min

Some showstoppers this week, get the low down on: Blackbaud in court battle over downplaying the severity of its 2020 ransomware attackAlmost half of US hospitals have shut down networks due to ransomware, new report showsPossible terrorist suspect and no fly list exposed on Elasticsearch cluster with no password
Aug 20, 2021
7 min

This week we're discussing:Gigabyte, and American Megatrends GIT breached by RansomEXXAccenture hit by Lockbit RaaS operation in the wake of REvil and Darkside winding downVulnerability disclosed in Arcadyan router firmware present for over a decade
Aug 13, 2021
8 min

In this week's episode: Darkside returns, rebranding as Blackmatter following the Colonial Pipeline attack, disgruntled Conti ransomware affiliate leaks the groups playbook and training materials.Also, ENISA concludes current defences will fold to supply chain based attacks based on recent examples.
Aug 6, 2021
7 min

In this weeks episode: Doppelpaymer looks to be performing a fairy obvious rebrand, The Babuk groups new ransomware forum ironically held to ransom, the no more ransom initiative saves over a billion in payments after 5 years in operation.
Jul 30, 2021
7 min
Load more
