Tag Sophos

New Menlo Security CEO Focuses on Agentic AI Runtime Protection

Artificial Intelligence & Machine Learning, Data Security, Next-Generation Technologies & Secure Development Former Mandiant Executive Bill Robbins Aims to Advance Browser-Based AI Security Michael Novinson (MichaelNovinson) • February 27, 2026 Bill Robbins, CEO, Menlo Security (Image: Menlo Security) Menlo Security has appointed Bill Robbins, a seasoned leader from Mandiant, as…

Read MoreNew Menlo Security CEO Focuses on Agentic AI Runtime Protection

Reynolds Ransomware Integrates BYOVD Driver to Bypass EDR Security Measures

Cybersecurity experts have identified a new ransomware strain, named Reynolds, which integrates a novel defense evasion tactic through a built-in Bring Your Own Vulnerable Driver (BYOVD) component. This technique allows the malware to disable security measures and evade detection effectively by exploiting legitimate drivers within its payload. BYOVD is a…

Read MoreReynolds Ransomware Integrates BYOVD Driver to Bypass EDR Security Measures

Intrusive Hackers Target Systems via Remote Monitoring Software

Fraud Management & Cybercrime, Governance & Risk Management, Ransomware VoidCrypt Ransomware Variant Exploits Remote Monitoring Tools, Reports Huntress Greg Sirico • February 13, 2026 Image: Andrey Popov/Shutterstock Recent findings from cybersecurity firm Huntress reveal that employee monitoring software is not only advantageous for management but has also become a valuable…

Read MoreIntrusive Hackers Target Systems via Remote Monitoring Software

Microsoft Releases Patches for 80 Vulnerabilities, Including Two Currently Under Attack

In its March 2023 Patch Tuesday update, Microsoft disclosed fixes for 80 security vulnerabilities, two of which have been actively exploited in the wild. These vulnerabilities target critical components within the Microsoft ecosystem, with eight categorized as Critical, 71 as Important, and one as Moderate in severity. This update continues…

Read MoreMicrosoft Releases Patches for 80 Vulnerabilities, Including Two Currently Under Attack

Harvard and UPenn Data Breached in ShinyHunters Scandal

Cybercrime, Fraud Management & Cybercrime Sensitive Financial and Admissions Data Leaked, Exposing Information on Major Donors Mathew J. Schwartz (euroinfosec) • February 4, 2026 Image: Shutterstock On February 4, 2026, the cyber extortion group ShinyHunters publicly took responsibility for the late 2025 data breaches impacting Harvard University and the University…

Read MoreHarvard and UPenn Data Breached in ShinyHunters Scandal

Social Engineering Attackers Target Okta’s Single Sign-On System

Fraud Management & Cybercrime, Identity & Access Management, Security Operations ShinyHunters Campaign Utilizes Voice Phishing to Circumvent MFA and Compromise Corporate Data Mathew J. Schwartz (euroinfosec) • January 28, 2026 Image: Oleksandr Yashchuk/Shutterstock Security experts are advising customers of identity provider Okta utilizing its single-sign-on (SSO) services to remain vigilant…

Read MoreSocial Engineering Attackers Target Okta’s Single Sign-On System

Real-Time Phishing Kits Now Targeting Okta, Microsoft, and Google

Cybersecurity experts are currently grappling with a surge of voice-phishing attacks aimed at single sign-on (SSO) tools. These coordinated efforts have led to instances of data theft and extortion, as various cybercrime groups, including one claiming ties to ShinyHunters, harness sophisticated voice calls and phishing kits to deceive victims into…

Read MoreReal-Time Phishing Kits Now Targeting Okta, Microsoft, and Google

SamSam Ransomware Attacks Thwarted Nearly $6 Million in Extortion Payments

Since its emergence in December 2015, SamSam ransomware has evolved into a lucrative venture for cybercriminals, extracting nearly $6 million from its victims. Recent findings from Sophos reveal that the operators of SamSam have garnered over $5.9 million, drawn from 233 targeted victims, with an escalating profit trend averaging approximately…

Read MoreSamSam Ransomware Attacks Thwarted Nearly $6 Million in Extortion Payments

Citrix NetScaler Warning: Ransomware Attackers Targeting Critical Vulnerability

Unpatched Citrix NetScaler Systems Targeted in Suspected Ransomware Attack Recent developments in cybersecurity have revealed that unpatched Citrix NetScaler systems facing the internet are being exploited by unidentified threat actors, likely in the context of a ransomware operation. Cybersecurity firm Sophos has identified this activity cluster as STAC4663, which is…

Read MoreCitrix NetScaler Warning: Ransomware Attackers Targeting Critical Vulnerability