NCSC joins partners to issue warning about China state-sponsored cyber activity targeting CNI networks

The UK and agencies in the US, Australia, Canada and New Zealand have issued new advice today (Wednesday) to help organisations detect China state-sponsored activity being carried out against critical national infrastructure networks. In the new joint advisory the National Cyber Security Centre – a part of GCHQ – alongside international partners highlight how recent […]

Continue reading


ChatGPT is about to revolutionize cybersecurity

Unless you purposely avoid social media or the internet completely, you’ve likely heard about a new AI model called ChatGPT, which is currently open to the public for testing. This allows cybersecurity professionals like me to see how it might be useful to our industry. The widely available use of machine learning/artificial intelligence (ML/AI) for cybersecurity practitioners is relatively […]

Continue reading


ChatGPT and the new AI are wreaking havoc on cybersecurity in exciting and frightening ways

Generative artificial intelligence is transforming cybersecurity, aiding both attackers and defenders. Cybercriminals are harnessing AI to launch sophisticated and novel attacks at large scale. And defenders are using the same technology to protect critical infrastructure, government organizations, and corporate networks, said Christopher Ahlberg, CEO of threat intelligence platform Recorded Future. Generative AI has helped bad […]

Continue reading


Future of SOC

A frequent topic I am asked about is what the future of the SOC looks like. At first glance, this seems like a simple question – but scratch beneath the surface and it’s actually really complex. Cybersecurity does not exist in its own little pocket universe. Instead, what happens in security operations is driven mainly […]

Continue reading


Iranian Hackers Using SimpleHelp Remote Support Software for Persistent Access

The Iranian threat actor known as MuddyWater is continuing its time-tested tradition of relying on legitimate remote administration tools to commandeer targeted systems. While the nation-state group has previously employed ScreenConnect, RemoteUtilities, and Syncro, a new analysis from Group-IB has revealed the adversary’s use of the SimpleHelp remote support software in June 2022. MuddyWater, active […]

Continue reading