GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Sophos X-Ops (sophosxops@infosec.exchange)

  1. Embed this notice
    Sophos X-Ops (sophosxops@infosec.exchange)'s status on Thursday, 17-Apr-2025 02:55:25 JST Sophos X-Ops Sophos X-Ops

    Today, Sophos X-Ops has published Sophos' Annual Threat Report, with a focus on cybercrime affecting small and medium businesses. There are a number of key takeaways from the incident and detection telemetry from 2024:
    First, network edge devices-and VPN appliances in particular-have been the largest single initial access point for cybercriminals over the past year, accounting for over 30 percent of all documented initial access methods. /1

    In conversation Thursday, 17-Apr-2025 02:55:25 JST from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/348/898/488/851/801/original/63b9d9074c945903.png
  2. Embed this notice
    Sophos X-Ops (sophosxops@infosec.exchange)'s status on Friday, 17-Jan-2025 02:05:06 JST Sophos X-Ops Sophos X-Ops
    • Andrew 🌻 Brandt 🐇

    Hi everyone, it's @threatresearch driving the X-Ops social media today to let you know about a story we just published, written by my colleague Gabor Szappanos.

    Szapi has done significant research in the past into a #malware family called #Gootloader that (for years, now) uses malicious #SEO techniques to promote compromised websites into Google search results.

    This research finally cracks wide open the mystery of how they manage to do that so effectively. It's a long read, but well worth the deep dive.

    https://news.sophos.com/en-us/2025/01/16/gootloader-inside-out/

    1/

    In conversation Friday, 17-Jan-2025 02:05:06 JST from infosec.exchange permalink
  3. Embed this notice
    Sophos X-Ops (sophosxops@infosec.exchange)'s status on Tuesday, 10-Sep-2024 21:56:16 JST Sophos X-Ops Sophos X-Ops

    Today, we've published a report on Sophos MDR's investigation into renewed cyberespionage tied to Operation Crimson Palace, an intrusion into a SE Asian government agency that has expanded to other regional public service organizations. A month after the previous campaign appeared to end, the actors behind three threat clusters we tracked renewed their efforts with new tools and tactics to evade blocks Sophos X-Ops had deployed to disrupt them. /1
    https://news.sophos.com/en-us/2024/09/10/crimson-palace-new-tools-tactics-targets/

    In conversation Tuesday, 10-Sep-2024 21:56:16 JST from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: news.sophos.com
      Crimson Palace returns: New Tools, Tactics, and Targets 
      from gallagherseanm
      Chinese cyberespionage campaign renews efforts in multiple organizations in Southeast Asia, blending tactics and expanding efforts 
  4. Embed this notice
    Sophos X-Ops (sophosxops@infosec.exchange)'s status on Thursday, 01-Feb-2024 09:26:19 JST Sophos X-Ops Sophos X-Ops

    In August of last year, Sophos X-Ops unveiled its approach to attribution: Rather than focusing on the “who” of attacks, Sophos X-Ops focuses on the “how.” By analyzing highly specific behavioral clues left behind by the attackers, we can find new links between threat activity clusters (TACs) to shorten two of the most critical pieces of responding to an attack: time to detect and time to respond.

    On Monday this week, Sophos X-Ops' Morgan Demboski presented our threat activity cluster system at the SANS Cyber Threat Intelligence Summit, specifically as it relates to unraveling the complex underground ransomware network.

    https://news.sophos.com/en-us/2023/08/08/enough-attribution-to-count/

    In conversation Thursday, 01-Feb-2024 09:26:19 JST from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: news.sophos.com
      Enough attribution to count
      from Chester Wisniewski
      Naming and shaming the bad guys can be gratifying, but for practical protection, Threat Activity Clusters are the way

User actions

    Sophos X-Ops

    Sophos X-Ops

    A task force composed of our SophosLabs, SecOps, and SophosAI teams working together towards one goal: protecting our customers.

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          239450
          Member since
          1 Feb 2024
          Notices
          4
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.