Sophos News - The Sophos Blog

1 min read Original article ↗
Supply chain attacks hit Checkmarx and Bitwarden developer tools - Featured image

Threat Research

Supply chain

Sophos X-Ops

pipeline

Bitwarden

Checkmarx

Supply chain attacks hit Checkmarx and Bitwarden developer tools 

Two supply chain attacks, same day, same command-and-control domain 

Author - Sophos Logo

Security Operations

CISO

playbook

toolkit

passkeys

Strengthening authentication with passkeys: A CISO playbook

Our passkey rollout took three tries. Here's a playbook to make your implementation smoother.

Ross McKerchar
Sophos Author
Mindi McDowell
Sophos Author
Ryan Westman

Threat Research

virtual machine

QEMU

PayoutsKing

GOLD ENCOUNTER

CitrixBleed2

QEMU abused to evade detection and enable ransomware delivery

The use of hidden virtual machines (VMs) enables long-term access, credential harvesting, data exfiltration, and PayoutsKing ransomware deployment

Morgan Demboski