Sophos Firewall v21 MR1 is now available
It’s a fully supported upgrade from v21, v20, v19.5 and v19.0.
David Jones reports: Researchers from Palo Alto Networks say they are investigating a ransomware attack related to the recently disclosed ToolShell vulnerabilities in Microsoft SharePoint. The hackers left the victim a ransom note on Sunday claiming they had encrypted files using the 4L4MD4R ransomware. The note warned that any attempt to decrypt the files would result in their…
Divya reports: Intel is pursuing legal action against a former software engineer who the company claims downloaded thousands of confidential files shortly after being fired in July. The incident highlights growing concerns about data security during workforce reductions and employee departures. “Growing concerns?” How many times over the past 15+ years have we reported on the insider……
by Stephen Gielda Founder, Packetderm LLC Understanding Global Surveillance In discussions of online privacy, you’ll often hear passionate debates about jurisdiction, with particular focus on avoiding the “Five Eyes” intelligence alliance countries (USA, UK, Canada, Australia, and New Zealand). The argument goes that by choosing a service provider outside these nations, you can somehow escape…
KrakenLabs writes: This is the second part of Outpost24’s KrakenLabs investigation into EncryptHub, an up-and-coming cybercriminal who has been gaining popularity in recent months and is heavily expanding and evolving operations at the time of writing. We’ve already published one article explaining EncryptHub’s campaigns and TPPs, infrastructure, infection methods, and targets. This article will follow a different approach. We’ll…
Alexander Koskey, Madison McMahan, and Matthew White of Baker Donelson write: A recent decision from the Federal Court of Australia in McClure v. Medibank Private Limited [2025] FCA 167 underscores just how easily privilege can be lost. While McClure was decided under Australian law, the court’s reasoning closely aligns with a series of U.S. cases that have…
Cybersecurity researchers have discovered two new malicious packages in the Python Package Index (PyPI) repository that are designed to deliver a remote access trojan called SilentSync on Windows systems. “SilentSync is capable of remote command execution, file exfiltration, and screen capturing,” Zscaler ThreatLabz’s Manisha Ramcharan Prajapati and Satyam Singh said. “SilentSync also extracts