Latest

CISO Intelligence

When IT Support Calls: Dissecting a ModeloRAT Campaign from Teams to Domain Compromise

Source: Rapid7 Blog  ·  Category: Threat Actor & Campaign ModeloRAT campaign exploits Microsoft Teams with fake IT Support messages to achieve domain compromise. Law firms rely heavily on Teams for collaboration; this attack pattern is directly applicable. Immediate action: user awareness training, conditional access policies, and monitoring for Teams-based anomalies. → Read

CISO Intelligence

NL: Dutch watchdog says healthcare lab failed data security rules before cyberattack affecting 850,000

Source: DataBreaches.net  ·  Category: Ransomware & Breach Dutch healthcare lab Bevolkingsonderzoek Nederland suffered Nova ransomware attack exposing 850,000 women's cervical cancer screening data; lab failed pre-attack data security compliance. Client notification: affected individuals must be notified per Dutch/GDPR rules (72-hour reporting to DPA). Regulatory body: Dutch