Sophos, a global leader in cybersecurity-as-a-service, has released its highly anticipated report, “The Bite from Inside: The Sophos Active Adversary Report”, offering an eye-opening analysis of evolving cybercriminal behaviors and tactics observed in the first half of 2024.
Based on nearly 200 incident response (IR) cases handled by the Sophos X-Ops IR and MDR teams, the report unveils alarming trends, including the increasing exploitation of trusted Windows tools to execute stealthy attacks.
Despite government efforts to disrupt its infrastructure in February, LockBit remains the most active ransomware group, responsible for 21% of detected attacks in 2024.
While still the primary cause of attacks at 39%, this is a notable drop from 56% in 2023.
Sophos Managed Detection and Response (MDR) teams are reducing “dwell times”—the duration attackers remain undetected.
Attackers frequently compromised Active Directory (AD) servers nearing or already past their end-of-life status. These unpatched systems remain a significant vulnerability.
John Shier, CTO Field at Sophos, emphasized the dual-edged nature of trusted tools like LOLbins:
“Living off the land not only offers discretion to attackers but often legitimizes their activities. IT teams must maintain nuanced and contextual awareness to detect abuse before it escalates into ransomware.”
This report is a wake-up call for organizations worldwide, highlighting the need for proactive defenses against increasingly sophisticated attackers who exploit trusted tools, compromised credentials, and outdated systems.
The Underworld film series is a dark, action-packed, and gothic saga that has captivated fans…
Do you know what is a VPN? What are the uses of VPNs and why…
In 2026, the demand for secure, fast, and reliable VPNs has reached an all-time high.…
Do you want to watch The Gangster, The Cop, The Devil on Netflix? Due to…
9Now is a highly popular Australian streaming service, providing free access to an extensive library…
Virgin Media Play is one of Ireland’s top streaming platforms, offering an impressive library of…