How SMBs use threat research and MDR to build a defensive edge

2026-03-06T08:51:38Z911c5265693c9bcf055ae8b3b5192ec83d3f4f53e180a7bee6cda45cd1cc826d
androidaptcredential-stuffingcve-2025-50165deepfake-voicedynowipereducation-sector-securityesetgenailongnosedgoblinlove-actuallymalwaremanaged-detection-and-responsemdrmobile-app-permissionsnaming-and-shamingphishingpromptspyransomwaresandwormspywarevulnerabilitywe-live-securitywindows-imaging-component

What happened

Collection of ESET WeLiveSecurity items (Dec 2025–Mar 2026) combining research, advisories and guidance. Key research highlights: PromptSpy — the first reported Android malware to incorporate generative AI into its execution flow; DynoWiper — a data‑wiping incident against Poland’s power sector attributed to Sandworm; LongNosedGoblin — a China‑aligned APT using Group Policy for espionage across Southeast Asian and Japanese government networks; and a revisitation of CVE-2025-50165, a critical Windows Imaging Component vulnerability. The feed also emphasizes practical defensive topics (MDR forSM

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
eset_welivesecurity
Record identifier
911c5265693c9bcf055ae8b3b5192ec83d3f4f53e180a7bee6cda45cd1cc826d
Enrichment time
2026-03-06T08:51:38Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · How SMBs use threat research and MDR to build a defensive edge · Baitaphish