➀ The 3AM ransomware group has been using more proactive techniques, such as email bombing and spoofed IT support calls, to gain access to corporate systems.
➁ Sophos has documented over 55 attempted attacks using this technique in the first quarter of 2025.
➂ The attackers used a pre-configured Windows 7 virtual machine to establish a hidden foothold and evade network protection software.