Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Ryuk Ransomware Operator Sentenced: Detection and Hardening Lessons for Defenders
Ryuk Affiliate Sentenced — Why This Still Matters to Your SOC A U.S. federal court has sentenced Karen Vardanyan, an Armenian national, to p...
Conti Ransomware Developer Sentenced to 4 Years: Detection and Hardening Guide Against Conti-Tradecraft Successors
What Happened Oleksii Oleksiyovych Lytvynenko, a Ukrainian national who developed encryption components for the Conti ransomware operation, ...
Conti Ransomware Member Sentenced: Defender Playbook for Anti-Recovery, Lateral Movement, and Encryption Staging
Conti Ransomware Member Sentenced: Defender Playbook for Anti-Recovery, Lateral Movement, and Encryption Staging Introduction A Ukrainian na...
Threat Research + MDR: How SMBs Can Build a Real Defensive Edge Against Modern Intrusion Campaigns
Threat Research + MDR: How SMBs Can Build a Real Defensive Edge Against Modern Intrusion Campaigns Small and mid-sized businesses are no lon...
Tift Regional Health System $1.2M Breach Settlement: Ransomware Defense and HIPAA Remediation Lessons for Healthcare Security Teams
Tift Regional Health System, a non-profit health system serving south central Georgia, has agreed to pay $1.2 million to settle a class acti...
Defending City Hall: How Security Professionals Can Close the Municipal Cyber Gap
Local governments are being targeted by ransomware crews and nation-state actors with the same tradecraft used against Fortune 500 enterpris...
Akira Ransomware Reboots Hosts into Safe Mode to Kill EDR — Detection and Hardening Guide for Defenders
Akira Is Killing Your EDR by Rebooting the Box — And It Almost Worked A recent Akira ransomware intrusion should be required reading for eve...
Texas Hearing Institute Encryption Attack Exposes 30,000 Patient Records: Healthcare Ransomware Defense and Detection Guide
Another Healthcare Provider, Another Encryption Event — 30,000 Patients' PHI at Risk Texas Hearing Institute has disclosed a cybersecurity i...
Akira Ransomware Affiliate Uses Safe Mode with Networking to Bypass EDR — Detection and Hardening Guide
The EDR Bypass That Almost Worked In a recent Akira ransomware intrusion investigated by incident responders, an affiliate executed one of t...