News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Raccoon-Stealer also uses Telegram for crypto mining
SophosNews

Sophos Report: Widespread raccoon stealer also uses Telegram for crypto mining and crypto theft. For the first time, the Telegram chat service was also used for command and control communication. Sophos has released the new study "Trash Panda as a Service Raccoon-Stealer Steals Cookies, Cryptocoins and More". The topic is a stealer who steals cryptocurrencies and information disguised as a pirate copy and at the same time injects harmful content such as cryptominers onto the target systems. “With much of our daily and professional life now dependent on web-based services, cybercriminals are increasingly targeting stored web credentials with their malware, which gives them access to much more…

Read more

Sophos equips EDR customers with XDR technology free of charge
SophosNews

Sophos has combined its endpoint detection and response solution Intercept X with EDR and its extended detection and response solution XDR in one solution. Customers who use Sophos Security solutions with EDR are currently being converted to the much more extensive XDR technology automatically and as a free service. In addition, the data history in the Sophos Data Lake has been increased from seven to thirty days. Customers who already use endpoint or server EDR now benefit from additional detection and response functions. Detailed threat analysis with Sophos XDR Only recently, Sophos announced the further development of its EDR offering, the availability of the Sophos Data Lake ...

Read more

Study: Chats as a platform for malware
Study: Chats as a platform for malware

The enemy in my chat - Booming communication platform Discord attracts cyber criminals in droves. Users are lured with prominent games such as Minecraft, Fortnite, or Grand Theft Auto. SophosLabs research shows that the volume of malicious content on Discord increased 140% year over year. Success makes you sexy - apparently cyber criminals see it that way too. In a new study, the SophosLabs found out that Discord, a currently very successful service for voice, video and text communication with more than 150 million users worldwide, is increasingly used as a malware distribution platform. The Sophos telemetry data shows that ...

Read more

2020: Retail was main target for ransomware

Main target of ransomware and data theft in the pandemic year 2020: 63 percent of the retail trade in DACH was affected by ransomware. A Sophos study shows that total costs per attack in DACH average 1,2 million euros. Sophos has published detailed results of a global survey entitled “State of Ransomware in Retail”. The new report describes the extent and impact of ransomware attacks on medium-sized retail companies worldwide and compared to countries and regions in 2020. New trend: Disclosure of stolen data One result is that retail companies are a key target for during the COVID-19 pandemic Ransomware attacks were; ...

Read more

What are cyber criminals doing with the millions of ransom money?
What are cyber criminals doing with the millions of ransom money?

Ransomware washes a fortune into cybercriminals' cryptocurrency accounts. But where does all the money go? A life in luxury? Research by Sophos shows that a lot of money is being invested in further attacks. So whoever pays will also finance the next attack on themselves. Where are the millions of Bitcoins & Co. going that the victims of ransomware attacks pay their extortionists on the assumption that they will get their confiscated data back in this way? At least once there was a hunch: When suspects were arrested in Ukraine who were in ...

Read more

Education sector particularly hard hit by ransomware
Education sector particularly hard hit by ransomware

According to a study by Sophos, the education sector saw the highest number of attacks and the highest recovery costs in 2020. In its study “Sophos State of Ransomware in Education 2021”, Sophos investigates the extent and impact of ransomware attacks. The latest ransomware attacks, which are also affecting education, confirm the research results of the Sophos study and the particular vulnerability of educational institutions to cyber threats. The REvil ransomware attack via Kaseya caused a stir in schools in New Zealand, the FBI and the British National Cyber ​​Security Center are issuing warnings for the education sector and also the BSI ...

Read more

IT-Mensch versus REvil - a live attack
IT-Mensch versus REvil - a live attack

The Sophos Managed Threat Response team in direct exchange with REvil ransomware. A specific case shows how the cybercriminals proceeded, how the Managed Threat Response (MTR) team finally gained the upper hand and what lessons companies should learn from the incident. Like many other ransomware families, the REvil blackmail software is used by cyber criminals to steal and encrypt data in order to subsequently demand the highest possible ransom. What makes REvil special, however, is the way the ransomware is made available. As if it were a completely normal business, the makers offer their "product" as a ...

Read more

Sophos takes over Capsule8 and integrates the security technology
Sophos takes over Capsule8 and integrates the security technology

Sophos takes over Capsule8 and integrates the security technology for Linux server and cloud containers into its Adaptive Cybersecurity Ecosystem (ACE). The acquisition expands the Sophos portfolio for detection and response solutions and services in the area of ​​inadequately protected server and cloud environments. Sophos, a global leader in next-generation cybersecurity, announces the acquisition of Capsule8. The company acts as a pioneer and market leader for runtime transparency as well as detection & response for Linux production servers and containers that cover on-premise and cloud capacities. Capsule8 was founded in New York in 2016 and is privately owned. Server security business: growth 20 percent per year "Sophos ...

Read more

5 lessons learned from the DarkSide ransomware attacks

The DarkSide ransomware attack on the colonial pipeline in the USA is just one of many examples worldwide that show that security is not just a matter of IT, but also of strategic planning and management. 5 insights from Sophos experts. The DarkSide ransomware attack on the colonial fuel pipeline, which supplies about 45 percent of the diesel, gasoline and aircraft fuel on the US east coast, is just one example that now joins over 60 known cases. Ireland's health service, Toshiba Europe and the Essen chemical company Brenntag are also among the alleged victims. Again and again the ...

Read more

Sophos with network detection and response technology
Sophos with network detection and response technology NDR technology

Sophos takes over Braintrace and strengthens its adaptive cybersecurity ecosystem with network detection and response technology (NDR). With the purchase, Sophos adds a new source of threat intelligence to its rapidly growing Managed Threat Response and Rapid Response services, as well as its XDR technology and data lake. Sophos, a global leader in next-generation cybersecurity, today announced the acquisition of Braintrace to further strengthen its adaptive cybersecurity ecosystem with Braintrace's proprietary Network Detection and Response (NDR) technology. This provides deep insights into network traffic patterns, including encrypted traffic, without the need for man-in-the-middle decryption. Reinforcement of the Rapid Response Team As part of the takeover, ...

Read more