Profile avatar
talosintelligence.com
The Official account of the Cisco Talos Intelligence Group. Support requests: http://talosintelligence.com/support
78 posts 1,013 followers 2 following
Prolific Poster

Ever wonder what cybercriminals talk about behind closed doors? In this week’s Threat Source newsletter, Thor takes us into the chat messages within the LockBit leak: http://cs.co/63328N5yCj

🔎 Follow the motive: Join Talos researcher Ashley Shen as we break down the evolution of initial access brokers and why defining their motives is key to better defense: http://cs.co/63328NdDKE

Attack kill chains are evolving, and defenders must, too. In this two-part blog, Talos examines how threat actors are working together like never before, and proposes an extension to the Diamond Model: http://cs.co/63324NVHbE

Don’t miss CTA TIPS 2025! Join Edmund Brumaghin and Nick Biasini as they uncover how threat actor collaboration and shifts in global defense are changing cyber attribution. Register now: www.cyberthreatalliance.org/tips-confere...

The CTA TIPS Conference starts tomorrow! Join Cisco Talos experts Jacob Finn, Craig Jackson and Michael Szeliga as they tackle ransomware case studies and share actionable threat intel strategies. Don’t miss out: www.cyberthreatalliance.org/tips-confere...

Stay ahead of cyber threats with Talos Incident Response's Threat Hunting experts — your first line of defense. Learn more: blog.talosintelligence.com/proactive-th...

Authority bias isn’t new, but it’s still powerful. 🚨 Stay sharp and learn to defend against it in this week’s edition of the Threat Source newsletter: http://cs.co/63325NyGDV

A clever new spam campaign is making waves in Brazil, using trusted tools and familiar systems to trick victims. How are they pulling it off? Cisco Talos has the details: http://cs.co/63321NBjYJ

Are you attending CTA TIPS next week? Edmund Brumaghin and Nick Biasini will dive into how multiple actors collaborate during cyber intrusions and how organizations can adapt to this evolving threat landscape. Register now: www.cyberthreatalliance.org/tips-confere...

Catch Cisco Talos at the CTA TIPS Conference! Learn from Jacob Finn, Craig Jackson & Michael Szeliga as they share ransomware insights & actionable threat intel methods. Register here: www.cyberthreatalliance.org/tips-confere...

DYK - that only 4% of companies globally are well-prepared for today's #cybersecurity threats. As #AI reshapes industries, it's also accelerating the speed and scale of cyberthreats. Learn more in our new Cybersecurity Readiness Index. ➡️ http://cs.co/633202CaDm

Why wait for threats to strike? See how Talos Incident Response uses the PEAK Threat Hunting Framework to stop threats from harming organizations like yours: blog.talosintelligence.com/proactive-th...

NGOs who serve vulnerable populations need cybersecurity, too. In this week's Threat Source newsletter, Joe dives into the challenges humanitarian organizations face and how volunteering your time and expertise can make a difference: http://cs.co/633292xJXV

This week on Talos Takes, we’re talking AI — the good, the bad and the downright malicious. Learn more about AI-driven threats and how defenders can fight back smarter: http://cs.co/633252aRA9

While important to have, MFA isn’t an invincible shield. Ready to see how cybercriminals are bypassing MFA — and what it means for your security? Read our newest blog: blog.talosintelligence.com/state-of-the...

On this week's TTP, Craig, Bill and Hazel break down the latest Talos IR Quarterly Trends: skyrocketing phishing attacks, rising pre-ransomware detection and the surge in commercial attack tools. Watch the full discussion: http://cs.co/633282oDsi

TL;DR: AI didn’t reinvent cyber attacks in 2024, but it supercharged social engineering and task automation. Here’s what may be coming next. For more, visit blog.talosintelligence.com/year-in-revi...

Ready, set… not quite yet. Threat actor use of AI in 2024 fell short of industry projections, but led to a surge in social engineering attacks. 📈 Find out what Cisco’s Robust Intelligence team is keeping an eye on: blog.talosintelligence.com/year-in-revi...

Watch out for threat actors who try to reel you in! 🎣 Phishing to achieve initial access soared this quarter, comprising 50% of all Talos IR incidents. Read our Quarterly Trends report for Q1 2025: http://cs.co/633252gat3

Don’t worry — no prior knowledge of Ted Lasso is required for this week’s Threat Source newsletter. Bill explores how intellectual curiosity drives success in cybersecurity and shares insights on the IAB ToyMaker’s tactics: http://cs.co/633262e1Ji

The next generation is getting creative! Join Steven and Hazel to discuss identity-based attacks and MFA. Listen to the newest Talos Takes now: http://cs.co/633262nbEo

Talos uncovered a major compromise in a critical infrastructure enterprise by an IAB, ToyMaker, and a double extortion gang, Cactus. Learn how ToyMaker infiltrates vulnerable systems: blog.talosintelligence.com/introducing-toymaker-an-initial-access-broker

TL;DR: If you don’t have MFA enabled correctly, now’s the time to reconsider! Learn more about identity-based attacks and MFA: blog.talosintelligence.com/year-in-revi...

In this week’s newsletter, Thorsten muses on how search engines and AI quietly gather your data while trying to influence your buying choices. Get the scoop on why you should question the platforms you interact with online: http://cs.co/633232Kru1

Hazel, Azim and Lexi discuss some of the most prolific ransomware techniques and groups — and why LockBit may end this year very differently to how they ended 2024. Listen to the full episode: http://cs.co/633272Ee1U

Cisco Talos has uncovered the XorDDoS controller and its global impact. This sophisticated malware targeted over 70% of its attacks on the U.S., and a new "VIP version" is available to threat actors. Read the full blog now: blog.talosintelligence.com/unmasking-th...

In 2024, the education sector faced the brunt of ransomware attacks. 📚 Explore our latest summary for more insights, including the methods ransomware actors are using to slip past defenses with minimal noise: blog.talosintelligence.com/year-in-revi...

We've tackled some fascinating questions already — keep them coming!

TL;DR: How ransomware actors are gaining access and other findings from 2024. For more, read the full blog: blog.talosintelligence.com/year-in-revi...

It's AMA Day! 🎉 Join us over on r/cybersecurity as Talos threat researchers answer your most pressing questions. www.reddit.com/r/cybersecur...

Curious about our 2025 Year in Review, what it’s like to work at Talos, or (almost) anything else? Join us on Tuesday for a Talos AMA. Bring your questions — we have answers.

In this week's Threat Source newsletter, Martin shares strategies to strengthen defenses against evolving email lures and frequently targeted vulnerabilities, even when budgets are tight. Read it here: http://cs.co/63325FLEAf

Talos researchers Martin Lee and Thorsten Rosendahl join Hazel for the first of our dedicated episodes on the top findings from Talos' 2024 Year in Review. Listen to the full episode here: www.buzzsprout.com/2018149/epis...

Have you received a suspicious text that seems to be from a toll road service? Discover how this widespread smishing scam is targeting U.S. drivers in our latest blog post: http://cs.co/63328FISEe

Mark your calendars: Talos researchers are taking to Reddit to answer your questions! See you on r/cybersecurity on Tuesday, April 15.

TL,DR: The top targeted vulnerabilities, email threats and adversary tooling from 2024. youtube.com/shorts/0OYRz...

Over the next few weeks, we’re breaking down the most critical sections of our 2024 Year in Review. This week, we examine the most frequently targeted vulnerabilities—particularly those affecting network infrastructure. blog.talosintelligence.com/year-in-revi...

Want to know the most notable findings in Talos' Year in Review directly from our report's authors? Watch our two part video series now: http://cs.co/63325FWWYR

Part 2 of the latest Talos Threat Perspective is out now! This year's report authors dive into most prolific ransomware groups and what is contributing to their success. Watch the full video here: youtu.be/YFwMSxYd-Kk?...

Curious about what’s been going on in the Talos world this week, or want to gaze at some bad boy bar graphs about cybersecurity? Read our latest Threat Source newsletter: http://cs.co/63329FdZRP

Special guests Caitlin Huey, Kendall McKay, and Nick Biasini join Hazel to discuss the 2024 Talos Year in Review report in the latest Talos Threat Perspective: http://cs.co/63326FdVSG

In 2024, threat actors predominantly focused on stealth and efficiency to conduct cyber attacks, often using simpler techniques over custom malware and zero-day vulnerabilities. Read our full Year in Review report to explore key topics and trends.

Did you hear? The Cisco Talos’ 2024 Year in Review is available for download now! Explore the dominant themes from our yearly threat report here: http://cs.co/63325FzrhP

Joe, Hazel, Bill and Dave break down Talos' Year in Review 2024 and discuss how and why cybercriminals have been leaning so heavily on attacks that are routed in stealth in simplicity. http://cs.co/63323FKXXR

Haven't had time to read Talos’ full 2024 Year in Review? Watch our overview video to get the highlights: http://cs.co/63324FzPVw

Get insights into more than 886 billion #cybersecurity events that occurred in 2024 and learn how to keep your defenses on lock ➡️ http://cs.co/6002Fzv8O @talosintelligence.com #ransomware #MFA

Cisco Talos’ 2024 Year in Review is available now! With visibility into more than 886 billion security events per day, the report features our key insights. Read the full report here: http://cs.co/63320FzuMG

In the latest edition of the Threat Source newsletter, Joe covers the very basics of money laundering, how it facilitates ransomware cartels, and what the regulatory future holds for cybercrime. Read it now: http://cs.co/63327FGw9L

Coming soon...👀

In case you got this week's Threat Source Newsletter and thought tomorrow, and tomorrow, and tomorrow... we're here to remind you:http://cs.co/633210Qsqz