This feed does not validate.
line 60, column 3: (65 occurrences) [help]
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/sh ...
^
line 62, column 2: (10 occurrences) [help]
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/s ...
^
line 315, column 260: (3 occurrences) [help]
... E ATT&CK® Evaluations Enterprise" />
^
In addition, interoperability with the widest range of feed readers could be improved by implementing the following recommendations.
... rel="self" type="application/rss+xml" />
^
line 34, column 0: (11 occurrences) [help]
<site xmlns="com-wordpress:feed-additions:1">166161023</site> <item>
<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
xmlns:georss="http://www.georss.org/georss"
xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#"
xmlns:media="http://search.yahoo.com/mrss/"
>
<channel>
<title>Sophos News</title>
<atom:link href="https://news.sophos.com/en-us/feed/" rel="self" type="application/rss+xml" />
<link>https://news.sophos.com/en-us/</link>
<description>The Sophos Blog</description>
<lastBuildDate>Thu, 19 Dec 2024 17:11:17 +0000</lastBuildDate>
<language>en-US</language>
<sy:updatePeriod>
hourly </sy:updatePeriod>
<sy:updateFrequency>
1 </sy:updateFrequency>
<generator>https://wordpress.org/?v=6.7.1</generator>
<image>
<url>https://news.sophos.com/wp-content/uploads/2020/01/cropped-sophos.png?w=32</url>
<title>Sophos News</title>
<link>https://news.sophos.com/en-us/</link>
<width>32</width>
<height>32</height>
</image>
<site xmlns="com-wordpress:feed-additions:1">166161023</site> <item>
<title>Phishing platform Rockstar 2FA trips, and “FlowerStorm” picks up the pieces</title>
<link>https://news.sophos.com/en-us/2024/12/19/phishing-platform-rockstar-2fa-trips-and-flowerstorm-picks-up-the-pieces/</link>
<comments>https://news.sophos.com/en-us/2024/12/19/phishing-platform-rockstar-2fa-trips-and-flowerstorm-picks-up-the-pieces/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[gallagherseanm]]></dc:creator>
<pubDate>Thu, 19 Dec 2024 15:11:48 +0000</pubDate>
<category><![CDATA[Security Operations]]></category>
<category><![CDATA[Threat Research]]></category>
<category><![CDATA[CloudFlare]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[FlowerStorm]]></category>
<category><![CDATA[legitimate service abuse]]></category>
<category><![CDATA[Phishing]]></category>
<category><![CDATA[phishing-as-a-service]]></category>
<category><![CDATA[Rockstar]]></category>
<category><![CDATA[Rockstar2FA]]></category>
<category><![CDATA[Sophos MDR]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958944</guid>
<description><![CDATA[A sudden disruption of a major phishing-as-a-service provider leads to the rise of another…that looks very familiar ]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/19/phishing-platform-rockstar-2fa-trips-and-flowerstorm-picks-up-the-pieces/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_1469287178.jpg?w=230&h=130&crop=1" medium="image" alt="" />
<post-id xmlns="com-wordpress:feed-additions:1">958944</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_1469287178.jpg" alt="" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_1469287178.jpg" medium="image" alt="">
<media:title type="html">A,Wooden,Acoustic,Guitar,At,Night.,With,Spotlight,For,Your</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/rockstar-decoy.png" medium="image" alt="A screenshot of a Rockstar2FA "decoy" page, a fake auto dealer site.">
<media:title type="html">A screenshot of a Rockstar2FA "decoy" page, a fake auto dealer site.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Rockstar-backend-server-comms.jpg" medium="image" alt="Screen shots of the developer view of Chrome showing web requests sent from a Rockstar2FA phishing portal. ">
<media:title type="html">Screen shots of the developer view of Chrome showing web requests sent from a Rockstar2FA phishing portal. </media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/RockstarTLDs.png" medium="image" alt="A pie chart showing the distribution of top-level domains the 10 most heavily used domain names were registered with. A third were .ru, a fifth were .com. ">
<media:title type="html">A pie chart showing the distribution of top-level domains the 10 most heavily used domain names were registered with. A third were .ru, a fifth were .com. </media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/FlowerStorm-detects-by-TLD.jpg" medium="image" alt="A bar chart showing the distribution of TLDs and number of URLs detected per month for Rockstar2FA. The number of .ru domains decreased significantly over time.">
<media:title type="html">A bar chart showing the distribution of TLDs and number of URLs detected per month for Rockstar2FA. The number of .ru domains decreased significantly over time.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Rockstarerror522.png" medium="image" alt="A screenshot of a failed connection error for a Rockstar decoy page.">
<media:title type="html">A screenshot of a failed connection error for a Rockstar decoy page.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/RockstarOutlookanimate.png" medium="image" alt="A screenshot of an animated Office365 logo for Outlook used by Rockstar's phishing portal pages.">
<media:title type="html">A screenshot of an animated Office365 logo for Outlook used by Rockstar's phishing portal pages.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Failed_connection_Rockstar_backend.png" medium="image" alt="A screenshot of a Chrome developer view of a Rockstar pages.dev phishing portal failing to connect to a backend server.">
<media:title type="html">A screenshot of a Chrome developer view of a Rockstar pages.dev phishing portal failing to connect to a backend server.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/FlowerStormphishnext-php.png" medium="image" alt="A screenshot of data abouit and ">
<media:title type="html">A screenshot of data abouit and </media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/FlowerStormEntraID-log.png" medium="image" alt="Figure 9: the EnteraID log for a sign-in by the adversary-in-the-middle script on the phishing service’s back-end server.">
<media:title type="html">Figure 9: the EnteraID log for a sign-in by the adversary-in-the-middle script on the phishing service’s back-end server.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Flowerstorm-same-host-authenticate.png" medium="image" alt="Figure 10: the HTTP header data for a phishing page’s backend server communications on a separate host">
<media:title type="html">Figure 10: the HTTP header data for a phishing page’s backend server communications on a separate host</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/FlowerstormDeveloperViewPhishportal.png" medium="image" alt="Figure 11: A developer browser view of the phishing page protectivewearsupplies[.]doclawfederal[.]com/wQBPg/">
<media:title type="html">Figure 11: A developer browser view of the phishing page protectivewearsupplies[.]doclawfederal[.]com/wQBPg/</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/rockstardom.png" medium="image" alt="Figure12: The document object model of a Rockstar2FA phishing page ">
<media:title type="html">Figure12: The document object model of a Rockstar2FA phishing page </media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/OldFlowerDom.png" medium="image" alt="Figure 13: The DOM of an older FlowerStorm phishing page (from June 2024)">
<media:title type="html">Figure 13: The DOM of an older FlowerStorm phishing page (from June 2024)</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/NewFlowerDom.png" medium="image" alt="Figure 14: The DOM of a newer FlowerStorm phishing page; the algorithm generating the title and function names uses a combination of two botanical-themed words">
<media:title type="html">Figure 14: The DOM of a newer FlowerStorm phishing page; the algorithm generating the title and function names uses a combination of two botanical-themed words</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/RS_vs_FS_detects.jpg" medium="image" alt="Figure 15: A chart plotting daily page detections for Rockstar2FA and FlowerStorm through the end of November 2024 ">
<media:title type="html">Figure 15: A chart plotting daily page detections for Rockstar2FA and FlowerStorm through the end of November 2024 </media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/FlowerStormTargeting.png" medium="image" alt="Figure 16: The ten countries most targeted by attackers using FlowerStorm, based on Sophos detections">
<media:title type="html">Figure 16: The ten countries most targeted by attackers using FlowerStorm, based on Sophos detections</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/FSindustrytargeting.png" medium="image" alt="Figure 17: The ten business sectors most targeted by attackers using FlowerStorm">
<media:title type="html">Figure 17: The ten business sectors most targeted by attackers using FlowerStorm</media:title>
</media:content>
</item>
<item>
<title>Sophos ranked #1 overall for Firewall, MDR, and EDR in the G2 Winter 2025 Reports</title>
<link>https://news.sophos.com/en-us/2024/12/18/sophos-ranked-1-overall-for-firewall-mdr-and-edr-in-the-g2-winter-2025-reports/</link>
<comments>https://news.sophos.com/en-us/2024/12/18/sophos-ranked-1-overall-for-firewall-mdr-and-edr-in-the-g2-winter-2025-reports/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[rajansanhotra]]></dc:creator>
<pubDate>Wed, 18 Dec 2024 10:21:54 +0000</pubDate>
<category><![CDATA[Products & Services]]></category>
<category><![CDATA[EDR]]></category>
<category><![CDATA[Endpoint]]></category>
<category><![CDATA[Firewall]]></category>
<category><![CDATA[G2]]></category>
<category><![CDATA[MDR]]></category>
<category><![CDATA[Sophos EDR]]></category>
<category><![CDATA[Sophos Endpoint]]></category>
<category><![CDATA[Sophos Firewall]]></category>
<category><![CDATA[Sophos MDR]]></category>
<category><![CDATA[Sophos XDR]]></category>
<category><![CDATA[XDR]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958917</guid>
<description><![CDATA[Sophos was also ranked the #1 solution in 36 individual reports spanning the Antivirus, EDR, Endpoint Protection Suites, XDR, Firewall, and MDR markets.]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/18/sophos-ranked-1-overall-for-firewall-mdr-and-edr-in-the-g2-winter-2025-reports/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Sophos-ranked-1-overall-for-Firewall-MDR-and-EDR-in-the-G2-Winter-2025-Reports-1.png?w=230&h=130&crop=1" medium="image" alt="Sophos ranked #1 overall for Firewall, MDR, and EDR in the G2 Winter 2025 Reports" />
<post-id xmlns="com-wordpress:feed-additions:1">958917</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/Sophos-ranked-1-overall-for-Firewall-MDR-and-EDR-in-the-G2-Winter-2025-Reports-1.png" alt="Sophos ranked #1 overall for Firewall, MDR, and EDR in the G2 Winter 2025 Reports" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Sophos-ranked-1-overall-for-Firewall-MDR-and-EDR-in-the-G2-Winter-2025-Reports-1.png" medium="image" alt="Sophos ranked #1 overall for Firewall, MDR, and EDR in the G2 Winter 2025 Reports">
<media:title type="html">Sophos ranked #1 overall for Firewall, MDR, and EDR in the G2 Winter 2025 Reports</media:title>
</media:content>
</item>
<item>
<title>Year in Review 2024: The major headlines and moments from Sophos this year</title>
<link>https://news.sophos.com/en-us/2024/12/17/year-in-review-2024-the-major-headlines-and-moments-from-sophos-this-year/</link>
<comments>https://news.sophos.com/en-us/2024/12/17/year-in-review-2024-the-major-headlines-and-moments-from-sophos-this-year/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[Doug Aamoth]]></dc:creator>
<pubDate>Tue, 17 Dec 2024 13:00:15 +0000</pubDate>
<category><![CDATA[Products & Services]]></category>
<category><![CDATA[Sophos Endpoint]]></category>
<category><![CDATA[Sophos MDR]]></category>
<category><![CDATA[Sophos X-Ops]]></category>
<category><![CDATA[Sophos XDR]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958865</guid>
<description><![CDATA[From cyber attacks across the geopolitical landscapes, to product updates that help small businesses, Sophos was there in 2024.]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/17/year-in-review-2024-the-major-headlines-and-moments-from-sophos-this-year/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/sophos-wews-blog-banner-year-in-review-1200x628px-01.png?w=230&h=130&crop=1" medium="image" alt="sophos-wews-blog-banner-year-in-review-1200x628px-01" />
<post-id xmlns="com-wordpress:feed-additions:1">958865</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/sophos-wews-blog-banner-year-in-review-1200x628px-01.png" alt="sophos-wews-blog-banner-year-in-review-1200x628px-01" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/sophos-wews-blog-banner-year-in-review-1200x628px-01.png" medium="image" alt="sophos-wews-blog-banner-year-in-review-1200x628px-01">
<media:title type="html">sophos-wews-blog-banner-year-in-review-1200x628px-01</media:title>
</media:content>
</item>
<item>
<title>DeepSpeed: a tuning tool for large language models</title>
<link>https://news.sophos.com/en-us/2024/12/13/deepspeed-a-tuning-tool-for-large-language-models/</link>
<comments>https://news.sophos.com/en-us/2024/12/13/deepspeed-a-tuning-tool-for-large-language-models/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[gallagherseanm]]></dc:creator>
<pubDate>Fri, 13 Dec 2024 11:30:50 +0000</pubDate>
<category><![CDATA[AI Research]]></category>
<category><![CDATA[deepspeed]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[LLM]]></category>
<category><![CDATA[LLM tuning]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958840</guid>
<description><![CDATA[SophosAI’s framework for upgrading the performance of LLMs for cybersecurity tasks (or any other specific task) is now open source. ]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/13/deepspeed-a-tuning-tool-for-large-language-models/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_asset-generation-6dc4f763-f8a7-4dff-a56b-92736d8c8d6c-1_edited-e1734048709973.jpeg?w=230&h=130&crop=1" medium="image" alt="" />
<post-id xmlns="com-wordpress:feed-additions:1">958840</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_asset-generation-6dc4f763-f8a7-4dff-a56b-92736d8c8d6c-1_edited-e1734048709973.jpeg" alt="" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_asset-generation-6dc4f763-f8a7-4dff-a56b-92736d8c8d6c-1_edited-e1734048709973.jpeg" medium="image" alt="">
<media:title type="html">shutterstock_asset-generation-6dc4f763-f8a7-4dff-a56b-92736d8c8d6c-1_edited</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Slide1.jpeg" medium="image" alt="" />
</item>
<item>
<title>The Bite from Inside: The Sophos Active Adversary Report</title>
<link>https://news.sophos.com/en-us/2024/12/12/active-adversary-report-2024-12/</link>
<comments>https://news.sophos.com/en-us/2024/12/12/active-adversary-report-2024-12/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[Angela Gunn]]></dc:creator>
<pubDate>Thu, 12 Dec 2024 14:00:56 +0000</pubDate>
<category><![CDATA[Security Operations]]></category>
<category><![CDATA[Threat Research]]></category>
<category><![CDATA[active adversary]]></category>
<category><![CDATA[Active Adversary Report]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[incident response]]></category>
<category><![CDATA[IR]]></category>
<category><![CDATA[LoLBINs]]></category>
<category><![CDATA[MDR]]></category>
<category><![CDATA[RDP]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958790</guid>
<description><![CDATA[A sea change in available data fuels fresh insights from the first half of 2024]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/12/active-adversary-report-2024-12/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_2154147129.jpg?w=230&h=130&crop=1" medium="image" alt="Active Adversary Report" />
<post-id xmlns="com-wordpress:feed-additions:1">958790</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_2154147129.jpg" alt="Active Adversary Report" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_2154147129.jpg" medium="image" alt="Active Adversary Report">
<media:title type="html">Active Adversary Report</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-01.png" medium="image" alt="A bar chart showing an increase in LOLbins in the span between 2021 and the first half of 2024; the totals increased from just over 100 to nearly 190">
<media:title type="html">A bar chart showing an increase in LOLbins in the span between 2021 and the first half of 2024; the totals increased from just over 100 to nearly 190</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-02.png" medium="image" alt="A stacked bar chart showing the relationship between artifact and LOLbin counts between 2021 and the first half of 2024, as described in text">
<media:title type="html">A stacked bar chart showing the relationship between artifact and LOLbin counts between 2021 and the first half of 2024, as described in text</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-03.png" medium="image" alt="A bar chart showing the prevalence of the top 29 LOLbins noted in the first half of 2024, ranging from RDP at just under 90 percent to findstr.exe at 10 percent">
<media:title type="html">A bar chart showing the prevalence of the top 29 LOLbins noted in the first half of 2024, ranging from RDP at just under 90 percent to findstr.exe at 10 percent</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-04.png" medium="image" alt="A table showing the changes in prevalence of the top 29 1H24 LOLbins between 2023 and the first half of the year; all but five of the listed LOLbins increased in frequency of usage">
<media:title type="html">A table showing the changes in prevalence of the top 29 1H24 LOLbins between 2023 and the first half of the year; all but five of the listed LOLbins increased in frequency of usage</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-05.png" medium="image" alt="A table showing RDP usage in attacks in 2022, 2023, and the first half of 2024">
<media:title type="html">A table showing RDP usage in attacks in 2022, 2023, and the first half of 2024</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-06.png" medium="image" alt="Five funnel-shaped charts showing the prevalence of ransomware attributions between 2020 and the first half of 2024; in this format they resemble different types of trees as described in text">
<media:title type="html">Five funnel-shaped charts showing the prevalence of ransomware attributions between 2020 and the first half of 2024; in this format they resemble different types of trees as described in text</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-07.png" medium="image" alt="A table showing the root causes of 1H24 cases for the entire report, for IR's portion of the data, and for MDR's portion of the data">
<media:title type="html">A table showing the root causes of 1H24 cases for the entire report, for IR's portion of the data, and for MDR's portion of the data</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-08.png" medium="image" alt="A table showing changes in artifact prevalence in AAR cases from 2021 to the first half of 2024">
<media:title type="html">A table showing changes in artifact prevalence in AAR cases from 2021 to the first half of 2024</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/aar2412-a1.png" medium="image" alt="A world map showing locations in which cases appearing in this report occurred">
<media:title type="html">A world map showing locations in which cases appearing in this report occurred</media:title>
</media:content>
</item>
<item>
<title>Sophos excels in the 2024 MITRE ATT&CK® Evaluations: Enterprise</title>
<link>https://news.sophos.com/en-us/2024/12/11/sophos-excels-in-the-2024-mitre-attck-evaluations-enterprise/</link>
<comments>https://news.sophos.com/en-us/2024/12/11/sophos-excels-in-the-2024-mitre-attck-evaluations-enterprise/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[rajansanhotra]]></dc:creator>
<pubDate>Wed, 11 Dec 2024 15:55:55 +0000</pubDate>
<category><![CDATA[Products & Services]]></category>
<category><![CDATA[Security Operations]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[MITRE ATT&CK]]></category>
<category><![CDATA[Sophos EDR]]></category>
<category><![CDATA[Sophos Endpoint]]></category>
<category><![CDATA[Sophos XDR]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958700</guid>
<description><![CDATA[Results from the latest ATT&CK Evaluations for endpoint detection and response solutions.]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/11/sophos-excels-in-the-2024-mitre-attck-evaluations-enterprise/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Sophos-excels-in-the-2024-MITRE-ATTCK®-Evaluations-Enterprise-3.png?w=230&h=130&crop=1" medium="image" alt="Sophos excels in the 2024 MITRE ATT&CK® Evaluations Enterprise" />
<post-id xmlns="com-wordpress:feed-additions:1">958700</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/Sophos-excels-in-the-2024-MITRE-ATTCK®-Evaluations-Enterprise-3.png" alt="Sophos excels in the 2024 MITRE ATT&CK® Evaluations Enterprise" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Sophos-excels-in-the-2024-MITRE-ATTCK®-Evaluations-Enterprise-3.png" medium="image" alt="Sophos excels in the 2024 MITRE ATT&CK® Evaluations Enterprise">
<media:title type="html">Sophos excels in the 2024 MITRE ATT&CK® Evaluations Enterprise</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Evaluation-particpants.png" medium="image" alt="MITRE ATT&CK® Evaluation participants">
<media:title type="html">MITRE ATT&CK® Evaluation participants</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/vendor-performance.png" medium="image" alt="MITRE ATT&CK Evaluation vendor performance">
<media:title type="html">MITRE ATT&CK Evaluation vendor performance</media:title>
</media:content>
</item>
<item>
<title>Keeping it real: Sophos and the 2024 MITRE ATT&CK Evaluations: Enterprise</title>
<link>https://news.sophos.com/en-us/2024/12/11/keeping-it-real-sophos-and-the-2024-mitre-attck-evaluations-enterprise/</link>
<comments>https://news.sophos.com/en-us/2024/12/11/keeping-it-real-sophos-and-the-2024-mitre-attck-evaluations-enterprise/?noamp=mobile#comments</comments>
<dc:creator><![CDATA[Michael Wood]]></dc:creator>
<pubDate>Wed, 11 Dec 2024 15:35:22 +0000</pubDate>
<category><![CDATA[Threat Research]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[MITRE]]></category>
<category><![CDATA[MITRE ATT&CK]]></category>
<category><![CDATA[Ransomware]]></category>
<category><![CDATA[Sophos X-Ops]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958764</guid>
<description><![CDATA[Sophos X-Ops looks at the realism of this year’s MITRE ATT&CK Evaluations]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/11/keeping-it-real-sophos-and-the-2024-mitre-attck-evaluations-enterprise/feed/</wfw:commentRss>
<slash:comments>1</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_2229463409.jpg?w=230&h=130&crop=1" medium="image" alt="White Grey Virtual reality Headset isolated on white background" />
<post-id xmlns="com-wordpress:feed-additions:1">958764</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_2229463409.jpg" alt="White Grey Virtual reality Headset isolated on white background" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_2229463409.jpg" medium="image" alt="White Grey Virtual reality Headset isolated on white background">
<media:title type="html">White,Grey,Virtual,Reality,Headset,Isolated,On,White,Background</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image1.png" medium="image" alt="A screenshot of a dashboard showing commands which establish persistence via 'ZoomHelperTool.plist'">
<media:title type="html">A screenshot of a dashboard showing commands which establish persistence via 'ZoomHelperTool.plist'</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image2.png" medium="image" alt="A screenshot of disassembled code">
<media:title type="html">A screenshot of disassembled code</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image3.png" medium="image" alt="A screenshot of disassembled code">
<media:title type="html">A screenshot of disassembled code</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image4.jpeg" medium="image" alt="A screenshot of a command window showing a symlink for msverload.dll">
<media:title type="html">A screenshot of a command window showing a symlink for msverload.dll</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image5.png" medium="image" alt="A screenshot of disassembled code">
<media:title type="html">A screenshot of disassembled code</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image6.png" medium="image" alt="A screenshot of a dashboard, showing detection of exfiltration">
<media:title type="html">A screenshot of a dashboard, showing detection of exfiltration</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image7.png" medium="image" alt="A screenshot of disassembled code">
<media:title type="html">A screenshot of disassembled code</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image8.png" medium="image" alt="A screenshot of a dashboard, with a list of commands to resize shadowstorage">
<media:title type="html">A screenshot of a dashboard, with a list of commands to resize shadowstorage</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image9.png" medium="image" alt="A screenshot of a dashboard, showing a list of executed net stop commands for various services">
<media:title type="html">A screenshot of a dashboard, showing a list of executed net stop commands for various services</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image10.png" medium="image" alt="A screenshot of a dashboard showing that cmd.exe was executed during an RDP session">
<media:title type="html">A screenshot of a dashboard showing that cmd.exe was executed during an RDP session</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image11.png" medium="image" alt="A screenshot of disassembled code">
<media:title type="html">A screenshot of disassembled code</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/image12.png" medium="image" alt="A screenshot of text ('thumbprint information') from CryptoGuard">
<media:title type="html">A screenshot of text ('thumbprint information') from CryptoGuard</media:title>
</media:content>
</item>
<item>
<title>December Patch Tuesday arrives bearing 71 gifts</title>
<link>https://news.sophos.com/en-us/2024/12/11/december-patch-tuesday-arrives-bearing-71-gifts/</link>
<comments>https://news.sophos.com/en-us/2024/12/11/december-patch-tuesday-arrives-bearing-71-gifts/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[Angela Gunn]]></dc:creator>
<pubDate>Wed, 11 Dec 2024 08:00:38 +0000</pubDate>
<category><![CDATA[Threat Research]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[Microsoft]]></category>
<category><![CDATA[Patch Tuesday]]></category>
<category><![CDATA[RDP]]></category>
<category><![CDATA[Windows]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958752</guid>
<description><![CDATA[Seventeen Critical-severity CVEs ready to deck your halls; also, new blog guidance for Windows Server admins]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/11/december-patch-tuesday-arrives-bearing-71-gifts/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_517169110.jpg?w=230&h=130&crop=1" medium="image" alt="martes de parches" />
<post-id xmlns="com-wordpress:feed-additions:1">958752</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_517169110.jpg" alt="martes de parches" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/shutterstock_517169110.jpg" medium="image" alt="martes de parches">
<media:title type="html">martes de parches</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/pt2412-01.png" medium="image" alt="A bar chart showing the severities of the issues addressed in the December 2024 Patch Tuesday release, sorted by impact. Information duplicated in text.">
<media:title type="html">A bar chart showing the severities of the issues addressed in the December 2024 Patch Tuesday release, sorted by impact. Information duplicated in text.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/pt2412-02.png" medium="image" alt="A bar chart showing the severeities of all patches in the December 2024 release, sorted by product family. Information also covered in text.">
<media:title type="html">A bar chart showing the severeities of all patches in the December 2024 release, sorted by product family. Information also covered in text.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/pt2412-03.png" medium="image" alt="A bar chart showing the cumulative totals for all Patch Tuesday releases in 2024. Highlights covered in text.">
<media:title type="html">A bar chart showing the cumulative totals for all Patch Tuesday releases in 2024. Highlights covered in text.</media:title>
</media:content>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/pt2412-04.png" medium="image" alt="A bar chart showing the patch counts for each month from January 202-December 2024; highlights covered in text">
<media:title type="html">A bar chart showing the patch counts for each month from January 202-December 2024; highlights covered in text</media:title>
</media:content>
</item>
<item>
<title>Network security best practices for the holidays</title>
<link>https://news.sophos.com/en-us/2024/12/10/network-security-best-practices-for-the-holidays/</link>
<comments>https://news.sophos.com/en-us/2024/12/10/network-security-best-practices-for-the-holidays/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[Chris McCormack]]></dc:creator>
<pubDate>Tue, 10 Dec 2024 20:19:47 +0000</pubDate>
<category><![CDATA[Products & Services]]></category>
<category><![CDATA[Firewall]]></category>
<category><![CDATA[network]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958738</guid>
<description><![CDATA[Tips to better protect your network while you take some well-deserved time off.]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/10/network-security-best-practices-for-the-holidays/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Shutterstock_768302194.jpg?w=230&h=130&crop=1" medium="image" alt="Shutterstock_768302194" />
<post-id xmlns="com-wordpress:feed-additions:1">958738</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2024/12/Shutterstock_768302194.jpg" alt="Shutterstock_768302194" />
<media:content url="https://news.sophos.com/wp-content/uploads/2024/12/Shutterstock_768302194.jpg" medium="image" alt="Shutterstock_768302194">
<media:title type="html">Shutterstock_768302194</media:title>
</media:content>
</item>
<item>
<title>Sophos AI to present on how to defang malicious AI models at Black Hat Europe</title>
<link>https://news.sophos.com/en-us/2024/12/10/sophos-ai-to-present-on-how-to-defang-malicious-ai-models-at-black-hat-europe/</link>
<comments>https://news.sophos.com/en-us/2024/12/10/sophos-ai-to-present-on-how-to-defang-malicious-ai-models-at-black-hat-europe/?noamp=mobile#respond</comments>
<dc:creator><![CDATA[gallagherseanm]]></dc:creator>
<pubDate>Tue, 10 Dec 2024 15:35:16 +0000</pubDate>
<category><![CDATA[AI Research]]></category>
<category><![CDATA[AI Trojans]]></category>
<category><![CDATA[featured]]></category>
<category><![CDATA[LLM]]></category>
<guid isPermaLink="false">https://news.sophos.com/en-us/?p=958735</guid>
<description><![CDATA[“LLMbotomy” research reveals how Trojans can be injected into Large Language Models, and how to disarm them.]]></description>
<wfw:commentRss>https://news.sophos.com/en-us/2024/12/10/sophos-ai-to-present-on-how-to-defang-malicious-ai-models-at-black-hat-europe/feed/</wfw:commentRss>
<slash:comments>0</slash:comments>
<media:content url="https://news.sophos.com/wp-content/uploads/2022/02/shutterstock_389760973.jpg?w=230&h=130&crop=1" medium="image" alt="" />
<post-id xmlns="com-wordpress:feed-additions:1">958735</post-id>
<media:thumbnail url="https://news.sophos.com/wp-content/uploads/2022/02/shutterstock_389760973.jpg" alt="" />
<media:content url="https://news.sophos.com/wp-content/uploads/2022/02/shutterstock_389760973.jpg" medium="image" alt="">
<media:title type="html">Flat,Line,Design,Website,Banner,Of,Learning,Process,,Brain,Process,</media:title>
</media:content>
</item>
</channel>
</rss>