logo

Sophos Blogs

ID: 952030e0-80e5-5ea5-8f47-c74302211fa3

STIX ID: identity--952030e0-80e5-5ea5-8f47-c74302211fa3

Feed Type: rss

Earliest post: 2026-01-20

Latest post: 2026-06-04

Latest blog posts and insights from Sophos

01/01/2020
06/04/2026
Title Date Published Describes IncidentAuthorVisible
You do surprise me.exe: An unexpected executable in Hola Browser2026-06-04TrueTrue
Pointing a Cursor at evading detection2026-06-02TrueTrue
Canvas attack aftermath: What risks come next2026-05-28TrueTrue
Canvas attack aftermath: What risks come next?2026-05-28TrueTrue
GitHub internal repositories breached2026-05-27TrueTrue
GitHub internal repositories breached2026-05-20TrueTrue
WantToCry ransomware remotely encrypts files2026-05-19TrueTrue
WantToCry ransomware remotely encrypts files2026-05-19TrueTrue
Why AMOS matters: The macOS malware stealing data at scale2026-05-14TrueTrue
May’s Patch Tuesday hauls out 132 CVEs2026-05-13TrueTrue
May’s Patch Tuesday hauls out 132 CVEs2026-05-13TrueTrue
The State of Identity Security 2026: Identity is the new perimeter2026-05-12TrueTrue
Sophos Endpoint in action: Blocking a novel supply chain attack2026-05-12TrueTrue
Why AMOS matters: The macOS malware stealing data at scale2026-05-11TrueTrue
Ransomware: AI changes the writer. It doesn't change the math.2026-05-11TrueTrue
Donuts and Beagles: Fake Claude site spreads backdoor2026-05-07TrueTrue
AI just became the world's most dangerous exploit writer. Here's why Sophos Endpoint is built to stop it.2026-05-01TrueTrue
Proof-of-concept exploit available for Linux 'Copy Fail' vulnerability (CVE-2026-31431)2026-05-01TrueTrue
AI finds the vulnerabilities, but exploiting them is a different problem.2026-05-01TrueTrue
'Mini Shai-Hulud' supply chain attack targets SAP npm packages2026-04-29TrueTrue
Supply chain attacks hit Checkmarx and Bitwarden developer tools2026-04-24TrueTrue
Microsoft addresses 163 CVEs, 88 advisories for April Patch Tuesday2026-04-17TrueTrue
QEMU abused to evade detection and enable ransomware delivery2026-04-16TrueTrue
The vulnerability flood is here. Here’s what it means – and how to prepare2026-04-09TrueTrue
Adobe Reader zero-day vulnerability in active exploitation2026-04-09TrueTrue
Axios npm package compromised to deploy malware2026-03-31TrueTrue
Incident responders, s'il vous plait: Invites lead to odd malware events2026-03-30TrueTrue
NICKEL ALLEY strategy: Fake it ‘til you make it2026-03-23TrueTrue
Oracle vulnerability (CVE-2026-21992) impacts core products2026-03-23TrueTrue
Android devices ship with firmware-level malware2026-03-19TrueTrue
Initial access techniques used by Iran-based threat actors2026-03-13TrueTrue
March Patch Tuesday visits 15 product families2026-03-13TrueTrue
Evil evolution: ClickFix and macOS infostealers2026-03-11TrueTrue
Hacktivist campaigns increase as United States, Iran, and Israel conflict intensifies2026-03-03TrueTrue
Cyber Advisory: Increased Cyber Risk Amid U.S.–Israel–Iran Escalation2026-03-01TrueTrue
Cisco SD-WAN vulnerabilities (CVE-2026-20127, CVE-2022-20775) in active exploitation2026-02-26TrueTrue
Nowhere, man: The 2026 Active Adversary Report2026-02-24TrueTrue
Malicious use of virtual machine infrastructure2026-02-04TrueTrue
Eeny, meeny, miny, moe? How ransomware operators choose victims2026-01-28TrueTrue
Beyond MFA: Building true resilience against identity-based attacks2026-01-27TrueTrue
Microsoft Office vulnerability (CVE-2026-21509) in active exploitation2026-01-27TrueTrue

1–41 of 41