Generative AI and cybersecurity: What Sophos experts expect in 2026
Categories: Sophos Insights
Tags: Sophos AI, Gen AI, Year in Review
Michael Gorelik of Morphisec writes: Morphisec recently investigated an incident involving a new variant of one of the most aggressive ransomware families: Mimic version 7.5. First observed in 2022, Mimic remains relatively underreported in the public domain, aside from a detailed analysis of Mimic version 6.3 that was previously published by Cyfirma and Kaspersky. Target Audience: This threat analysis…
Jonathan Greig reports: The Anchorage Police Department said it took a range of actions to address a recent cyberattack on one of its technology service providers. A police department spokesperson told Recorded Future News that the incident relates to a cyberattack involving data migration firm Whitebox Technologies, which alerted the police department of a security……
Marine Pichon and Alexis Bonnefoi of Orange Cyberdefense report: Last year, Orange Cyberdefense’s CERT investigated a series of incidents from an unknown threat actor leveraging both ShadowPad and PlugX. Tracked as Green Nailao (“Nailao” meaning “cheese” in Chinese – a topic our World Watch CTI team holds in high regard), the campaign impacted several European organizations, including in the healthcare vertical, during…
From NY Department of Financial Services: September 17, 2025 New York State Department of Financial Services Superintendent Adrienne A. Harris today issued new guidance on the use of blockchain analytics tools for banking institutions contemplating or already conducting virtual currency-related activities. As banking institutions experience increasing interest in and exposure to virtual currency activities, blockchain……
Eduard Kovacs reports: Japanese media giant Nikkei on Tuesday reported that hackers had gained access to employee Slack accounts, stealing information pertaining to thousands of individuals. Nikkei, which is best known for major financial publications such as The Nikkei and Financial Times, said the incident involved malware stealing Slack credentials from an employee’s personal computer…….
The threat actors behind a large-scale, ongoing smishing campaign have been attributed to more than 194,000 malicious domains since January 1, 2024, targeting a broad range of services across the world, according to new findings from Palo Alto Networks Unit 42. “Although these domains are registered through a Hong Kong-based registrar and use Chinese nameservers,…