#Sophos

Victorock Kenya Limitedvictorock_kenya
2025-05-21

Looking for trusted in and East Africa? is your certified for , & . Call +254706357055 or email info@victorockkenya.com us today.

victorockkenya.com/victorock-k

Victorock Kenya Limitedvictorock_kenya
2025-05-21

As a in East Africa, trust Victorock to deliver Sophos enterprise-grade with local expertise you can rely on. Call +254706357055 or email info@victorockkenya.com us today.

victorockkenya.com/victorock-k

Victorock Kenya Limitedvictorock_kenya
2025-05-15

🛡️ Defend your digital world with ! 🚀Advanced made simple. Protect your business from online threats with industry-leading solutions. Call +254706357055 or email info@victorockkenya.com to place your order.

victorockkenya.com/order-sopho

computing competencecc@feinste-netzwerke.de
2025-05-09
#Wochenbericht KW19:

- Mo: #3CX Einstellungen, Upgrade von #SmartTime Datenbank. Stromausfall eines #Unifi Netzwerks. Alles wieder gut.
- Di: Installation eine #OauthProxy unter #Debian. Evaluierung des transparenten #Proxy in einer #Watchguard für eine kommende Migration weg von #Sophos
- Mi: Aufbau einer #3CX #Telefonanlage. Einrichtung eines transparenten #Proxy auf einer #OPNSense inkl. #ACME Zertifikatsverwaltung nicht nur für HTTP, sondern auch SMTP und IMAP auf einen #GroupOffice Server
- Do: Bürotag, Kleinigkeiten. Eine #3CX leidete unter einer schlechten #Fortinet Firewall. Reboot tut gut. Entstörung E-Mail Versand in einer Praxis
- Fr: @oliver@lfnt.site installiert die Basis für neander.social . Mal gucken wie weit wir mit #FreeBSD kommen. Sonst #Orga und #Abrechnungen. #Teammeeting

Highlight: @besendorf@chaos.social testet den Umstieg von #gitea auf #forgejo. Sieht gut aus!
Tino Ruijs 🍉tinoruijs
2025-05-07

Vanochtend voor het eerst last gehad van het feit dat ik een nieuwe authenticator app () gebruik en niet die van of .
Klant gebruikt voor vpn en die moet een goedkeuringsmelding krijgen ipv sms of een andere app.
Sophos gebruiken is dus geen aanrader.

2025-05-05

Found the last #dateformat on a #sophos UTM9 in the logs. Who conceived that log format?! #iso8601 is the only acceptable format for logs.

An instance of the "tuxedo winnie the pooh" meme. Next to regular Pooh, the date "31.12.2024" is written, the Pooh in a tuxedo corresponds to "2024-12-31" and the derp Pooh has the date format "2024:12:31" next to it.
2025-04-28

The Persistent Threat of Salt Typhoon: Tracking Exposures of Potentially Targeted Devices

Salt Typhoon, a Chinese state-sponsored threat actor, has been targeting major telecommunications providers worldwide by exploiting vulnerabilities in network devices. This analysis tracks global exposures of internet-facing devices associated with Salt Typhoon activity over six months, including Sophos Firewalls, Cisco IOS XE WebUIs, Ivanti Connect Secure, and Fortinet FortiClient EMS systems. Overall combined exposure decreased by 25%, with Sophos Firewall interfaces showing the largest reduction. Cisco IOS XE was the only platform with increased exposure. Geographically, most exposures remain concentrated in the United States, except for Sophos XG Firewall exposures in Germany. The persistence of exposed devices raises questions about remediation efforts and organizational responses to these threats.

Pulse ID: 680c3c41a960b91fa23ec72d
Pulse Link: otx.alienvault.com/pulse/680c3
Pulse Author: AlienVault
Created: 2025-04-26 01:52:01

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#Chinese #Cisco #ConnectSecure #CyberSecurity #Germany #InfoSec #Ivanti #OTX #OpenThreatExchange #RAT #Sophos #Telecom #Telecommunication #UnitedStates #bot #iOS #AlienVault

2025-04-16

Einen VPN Tunnel bekommen ich aber leider nicht hin. #OpenVPN #Sophos

Christoffer S.nopatience@swecyb.com
2025-03-28

(sophos.com) Evilginx: How Attackers Bypass MFA Through Adversary-in-the-Middle Attacks news.sophos.com/en-us/2025/03/

A short descriptive article about Evilginx and how stealing credentials work, a few suggested ways of detecting etc.

Summary:
This article examines Evilginx, a tool that leverages the legitimate nginx web server to conduct Adversary-in-the-Middle (AitM) attacks that can bypass multifactor authentication (MFA). The tool works by proxying web traffic through malicious sites that mimic legitimate services like Microsoft 365, capturing not only usernames and passwords but also session tokens. The article demonstrates how Evilginx operates, showing how attackers can gain full access to a user's account even when protected by MFA. It provides detection methods through Azure/Microsoft 365 logs and suggests both preemptive and reactive mitigations, emphasizing the need to move toward phishing-resistant FIDO2-based authentication methods.

#Cybersecurity #ThreatIntel #Evilginx #Phishing #Credentials #MFA #Azure #Sophos

2025-03-20

Le ransomware #Qilin affiche 23 victimes en mars

Le tribunal de Cleveland, dans l'Ohio (USA) est à l'arrêt depuis le 23 février, son site WEB est hors service. L'hôpital de Los Madroños à 30 km à l'ouest de Madrid, voit ses données exposées sur le dark web.

Qilin affiche aussi plus d'une centaine de documents appartenant au ministère des Affaires étrangères de l'Ukraine dans un contexte géopolitique en équilibre précaire.

librexpression.fr/le-ransomwar

#ClevelandOhio #cyberattack #databreach #espagne #europe #hospital #informatique #librexpression #ransomware #gdpr #russie #sophos #threaths #ukraine #usa #warfare

(Crédits : Mohamed Hassan/Pixabay)

Une loupe est utilisée pour observer, ici une coccinelle sur un écran d'ordinateur.
2025-03-04

Vor zwei Jahren habe ich aufgeschrieben wie ich mir mit einem alten #Sophos Gateway und #OPNsense einen sehr anständigen #Router / #Firewall gebaut habe.
Ganz vergessen zu veröffentlichen, das habe ich jetzt mal nachgeholt. 😵‍💫

schatenseite.de/2025/03/04/opn

Sophos SG 105, wiederbelebt
2025-02-06

보안 업체 인수해서 인프라 사업에 끼워팔기 경영 모임원 중 하나였던 Dell Technologies도 이제 AI 하겠다고 보안 사업 엑시트. 유럽의 스몰 비즈니스 보안 사업 강자인 Sophos가 인수 했다.

#Sophos #DellTechnologies #Secureworks

John Leonardjohnleonard
2025-01-24

Cyber gangs from Russia are increasingly acting as Microsoft support staff, in order to steal data or deliver ransomware to their victims.

computing.co.uk/news/2025/secu

2024-12-23

Critical vulnerabilities threaten Sophos firewalls

Important security updates for Sophos firewalls have been released. They install automatically with the default settings.

heise.de/en/news/Critical-vuln

#Firewall #Patchday #Security #Sicherheitslücken #Sophos #Updates #news

nemo™ 🇺🇦nemo@mas.to
2024-12-23

🚨 Security Alert! Sophos has identified and patched three critical vulnerabilities in its Firewall, including risks for remote code execution and privilege escalation. Users are urged to apply the patch immediately! If unable, follow the suggested workarounds to protect your systems. 🔒💻 Read more here: techradar.com/pro/security/sop #CyberSecurity #Sophos #FirewallFlaws #PatchNow #newz

2024-12-23

Kritische Sicherheitslücken bedrohen Sophos-Firewalls

Es sind wichtige Sicherheitsupdates für Firewalls von Sophos erschienen. Mit den Standardeinstellungen installieren sie sich automatisch.

heise.de/news/Kritische-Sicher

#Firewall #Patchday #Security #Sicherheitslücken #Sophos #Updates #news

Anonymous 🐈️🐾☕🍵🏴🇵🇸 :af:youranonriots@kolektiva.social
2024-12-22

#Sophos has addressed three vulnerabilities in its Sophos Firewall product that could allow remote unauthenticated threat actors to perform #SQLinjection, remote code execution, and gain privileged SSH access to devices.
#cybercrime #CyberSecurity bleepingcomputer.com/news/secu

Anonymous 🐈️🐾☕🍵🏴🇵🇸 :af:youranonriots@kolektiva.social
2024-12-22

Alert: Two critical vulnerabilities in #Sophos Firewalls could grant attackers remote code execution and privileged access.

🔧 Action Plan:
✔️ Update to v21 MR1 or newer.
✔️ Restrict SSH access immediately.
✔️ Ensure user portals are not WAN-exposed.

🔗thehackernews.com/2024/12/soph

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst