Skip to content

PossibleThreat Articles

Articles for the experts…

  • Security
    • Sophos
    • MalwareBytes
    • TrendMicro
    • Microsoft
    • Fortinet
  • Sciences
  • Independent
    • Krebs
    • Wired
    • Securiteam
    • ComputerWorld

active adversary playbook

Security Sophos 

Everything Everywhere All At Once: The 2023 Active Adversary Report for Business Leaders

April 25, 2023 0 Comments active adversary playbook, coinminer, conti, data breach, exfiltration, extortion, featured, Incident Response, loader, lockbit, Ransomware, sophos x-ops, threat research, web shells

Credit to Author: Angela Gunn| Date: Tue, 25 Apr 2023 10:00:03 +0000

A deep dive into over 150 incident-response cases reveals both attackers and defenders picking up the pace

Read more
Security Sophos 

‘AuKill’ EDR killer malware abuses Process Explorer driver

April 19, 2023 0 Comments active adversary, active adversary playbook, anti-edr, aukill, backstab, EDR, edr killer, featured, malware, process explorer, procexp, sophos x-ops, targeted attacks, threat research

Credit to Author: Andrew Brandt| Date: Wed, 19 Apr 2023 10:00:43 +0000

Driver based attacks against security products are on the rise

Read more
Security Sophos 

Lockbit, Hive, and BlackCat attack automotive supplier in triple ransomware attack

August 10, 2022 0 Comments active adversary playbook, blackcat, featured, hive, lockbit, Ransomware, security operations, sophos x-ops

Credit to Author: Matt Wixey| Date: Wed, 10 Aug 2022 11:00:50 +0000

After gaining access via RDP, all three threat actors encrypted files, in an investigation complicated by event log clearing and backups. 3 attackers, 2 weeks – 1 entry point.

Read more
Security Sophos 

Multiple attackers increase pressure on victims, complicate incident response

August 9, 2022 0 Comments active adversary playbook, blackcat, conti, cryptominers, featured, hive, iabs, karakurt, lockbit, Ransomware, security operations, sophos x-ops, threat research

Credit to Author: Matt Wixey| Date: Tue, 09 Aug 2022 11:00:04 +0000

Sophos’ latest Active Adversary report explores the issue of organizations being hit multiple times by attackers

Read more
Security Sophos 

Active Adversary Playbook 2022 Insights: Web Shells

June 22, 2022 0 Comments active adversary playbook, cve-2021-31207, cve-2021-34473, cve-2021-34523, featured, proxylogon, proxyshell, threat research, web shells

Credit to Author: gallagherseanm| Date: Wed, 22 Jun 2022 11:00:07 +0000

Public proofs-of-concept of web shell exploits coincide with major spikes in attacks.

Read more
Security Sophos 

Move fast, unbreak things: About the Sophos Active Adversary Playbook 2022

June 7, 2022 0 Comments active adversary playbook, security operations, SophosLabs Uncut, threat research

Credit to Author: Angela Gunn| Date: Tue, 07 Jun 2022 11:16:50 +0000

Our latest report shows that the most pleasant way to learn from Rapid Response mayhem is to read about how it worked out for someone else

Read more

Recent Posts

  • RFK Jr. Orders HHS to Give Undocumented Migrants’ Medicaid Data to DHS
  • ‘No Kings’ Protests, Citizen-Run ICE Trackers Trigger Intelligence Warnings
  • CBP’s Predator Drone Flights Over LA Are a Dangerous Escalation
  • Here’s What Marines and the National Guard Can (and Can’t) Do at LA Protests
  • How to Protest Safely in the Age of Surveillance

Recent Comments

    Archives

    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • December 2023
    • November 2023
    • October 2023
    • September 2023
    • August 2023
    • July 2023
    • June 2023
    • May 2023
    • April 2023
    • March 2023
    • February 2023
    • January 2023
    • December 2022
    • November 2022
    • October 2022
    • September 2022
    • August 2022
    • July 2022
    • June 2022
    • May 2022
    • April 2022
    • March 2022
    • February 2022
    • March 2020
    • February 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019

    Categories

    • BitCoin
    • Blokt
    • ComputerWorld
    • Currency
    • Digital
    • Fortinet
    • Independent
    • Krebs
    • MalwareBytes
    • Microsoft
    • News
    • QuickHeal
    • Science
    • Securiteam
    • Security
    • Sophos
    • Technology
    • TrendMicro
    • Wired
    Copyright © 2025 PossibleThreat Articles. All rights reserved.
    Theme: ColorMag by ThemeGrill. Powered by WordPress.