<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Tyler McGraw &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/author/tyler-mcgraw/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Tue, 10 Jun 2025 15:00:00 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>BlackSuit Continues Social Engineering Attacks in Wake of Black Basta’s Internal Conflict</title>
		<link>https://noise.getoto.net/2025/06/10/blacksuit-continues-social-engineering-attacks-in-wake-of-black-bastas-internal-conflict/</link>
		
		<dc:creator><![CDATA[Tyler McGraw]]></dc:creator>
		<pubDate>Tue, 10 Jun 2025 15:00:00 +0000</pubDate>
				<category><![CDATA[incident response]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Managed Detection and Response (MDR)]]></category>
		<category><![CDATA[ransomware]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=ac170da65e19d8d1d28672bb7059c326</guid>

					<description><![CDATA[Despite a significant decrease in social engineering attacks linked to the Black Basta ransomware group since late December 2024, Rapid7 has observed sustained social engineering attacks. Evidence suggests that BlackSuit affiliates have either adopted Black Basta’s strategy or absorbed its members.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/06/GettyImages-2169855131.jpg" length="0" type="" />

			</item>
		<item>
		<title>Black Basta Ransomware Campaign Drops Zbot, DarkGate, and Custom Malware</title>
		<link>https://noise.getoto.net/2024/12/04/black-basta-ransomware-campaign-drops-zbot-darkgate-and-custom-malware/</link>
		
		<dc:creator><![CDATA[Tyler McGraw]]></dc:creator>
		<pubDate>Wed, 04 Dec 2024 15:45:04 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Managed Detection and Response (MDR)]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2c9775b70e57a2ce095a7c96e4b1f71e</guid>

					<description><![CDATA[Beginning in early October, Rapid7 has observed a resurgence of activity related to the ongoing social engineering campaign being conducted by Black Basta ransomware operators.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/12/GettyImages-2180078018.jpg" length="0" type="" />

			</item>
		<item>
		<title>Ongoing Social Engineering Campaign Refreshes Payloads</title>
		<link>https://noise.getoto.net/2024/08/12/ongoing-social-engineering-campaign-refreshes-payloads/</link>
		
		<dc:creator><![CDATA[Tyler McGraw]]></dc:creator>
		<pubDate>Mon, 12 Aug 2024 13:00:00 +0000</pubDate>
				<guid isPermaLink="false">http://noise.getoto.net/?guid=b734f99d404572fca13a2dbde84e08cb</guid>

					<description><![CDATA[On June 20, 2024, Rapid7 identified multiple intrusion attempts by threat actors utilizing Techniques, Tactics, and Procedures (TTPs) that are consistent with an ongoing social engineering campaign being tracked by Rapid7.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/08/GettyImages-1286070267.jpg" length="0" type="" />

			</item>
		<item>
		<title>Ongoing Malvertising Campaign leads to Ransomware</title>
		<link>https://noise.getoto.net/2024/05/13/ongoing-malvertising-campaign-leads-to-ransomware/</link>
		
		<dc:creator><![CDATA[Tyler McGraw]]></dc:creator>
		<pubDate>Mon, 13 May 2024 19:17:27 +0000</pubDate>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Managed Detection and Response (MDR)]]></category>
		<category><![CDATA[ransomware]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=16864a729b964ba984ab51187379cb86</guid>

					<description><![CDATA[Rapid7 has observed an ongoing campaign to distribute trojanized installers for WinSCP and PuTTY via malicious ads on commonly used search engines, where clicking on the ad leads to typo squatted domains.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/05/GettyImages-1455658894.jpg" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 28/82 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2026-03-13 12:22:40 by W3 Total Cache
-->