frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

A timeline of cyber attacks:home users, contractors, and SMBs are now targets

4•EricAUS•7h ago
Over the last decade, the pattern in cyber attacks has shifted noticeably. Large enterprises still get headlines, but the most consistent victims are now home users, contractors, MSPs, and SMBs. Lower visibility, weaker controls, and reliance on cloud and 3rd party platforms have made these environments attractive to both criminal groups and state linked actors.

I put together a timeline of major attacks from 2016 to 2025 to show how this trend evolved. The text version is below for anyone who prefers reading it directly.

Timeline of attacks (2016–2025)

• 2016 — Mirai botnet DDoS Home users with consumer IoT devices were compromised and turned into a large DDoS botnet. Multiple criminal groups reused the leaked Mirai code. • 2017 — WannaCry ransomware Home users and SMBs were hit by a worm exploiting SMBv1. Widely attributed to the Lazarus Group. • 2017 — NotPetya wiper SMBs were affected by a destructive wiper disguised as ransomware. Linked to Russian state associated actors. • 2018–2020 — Emotet/TrickBot → Ryuk/Conti Credential theft and ransomware campaigns targeting SMBs. Operated by multiple criminal groups. • 2019 — Cloud and 3rd party breaches SMBs and home users impacted by weak access controls and data exposure across various cloud platforms. • 2020 — Toll Group ransomware Contractors and service providers disrupted by ransomware attacks affecting logistics operations. • 2020–2021 — SolarWinds supply chain breach 3rd party providers compromised via trojanized software updates. Attributed to a Russian state linked APT. • 2021 — Kaseya VSA ransomware MSPs and SMBs hit through a supply chain ransomware attack. Attributed to the REvil group. • 2021–2023 — Ransomware as a Service surge SMBs targeted by affiliate driven ransomware operations across multiple RaaS groups. • 2022–2024 — SaaS and 3rd party platform breaches Home users and SMB customers affected by credential theft and data exfiltration across cloud platforms. • 2023–2025 — Targeting MSPs and niche contractors

MSPs and specialised contractors targeted with ransomware, data theft, and extortion by both criminal and state linked actors.

I’ve been working on a Windows focused threat hunting tool (www.sapience-tech.com) aimed at home users and SMBs who don’t have EDR or SIEM tooling. It grew out of trying to help smaller environments spot early indicators of compromise without needing enterprise grade infrastructure. Happy to answer questions about the data, the timeline, or the approach.

Comments

OgsyedIE•6h ago
Why here and not substack?
EricAUS•5h ago
Hi OgsyedIE,

That is a great idea, I had not thought about substack. I will go and see where it fits there.

Cheers.

Ask HN: Who is hiring? (March 2026)

213•whoishiring•17h ago•250 comments

Ask HN: Who wants to be hired? (March 2026)

102•whoishiring•17h ago•234 comments

Ask HN: What Online LLM / Chat do you use?

10•ddxv•7h ago•10 comments

Ask HN: How Do Emergency Alerts on Phone Work?

3•rishikeshs•3h ago•2 comments

Whats Up with Claude Lately?

13•mech422•5h ago•13 comments

Ask HN: How are you all staying sane?

122•throwaway53463•1d ago•122 comments

Ask HN: What sources like HN do you consume?

48•DavidHaerer•1d ago•29 comments

Ask HN: Would engineers be interested in a technical prep consultant?

5•TechPrepper•12h ago•6 comments

Tell HN: MitID, Denmark's digital ID, was down

141•mousepad12•3d ago•181 comments

A timeline of cyber attacks:home users, contractors, and SMBs are now targets

4•EricAUS•7h ago•2 comments

Ask HN: Codex CLI error reveals "GPT-5.4-ab-arm2" string

4•quantisan•7h ago•1 comments

BlackTape – open-source music discovery built on MusicBrainz and Discogs

7•Blacktape•9h ago•0 comments

Ask HN: How did you figure out what research field you were passionate about?

6•aabiji•9h ago•5 comments

Aura-State: Formally Verified LLM State Machine Compiler

4•rohanmunshi08•1d ago•2 comments

Ask HN: How to approach new people in 2026?

10•tavro•1d ago•16 comments

Ask HN: Billions of dollars in funding, but what's changed for robotics?

9•ajax33•22h ago•2 comments

AWS ME-CENTRAL-1 Region Down (Due to additional loss of mec1-az3)

11•nixgeek•1d ago•2 comments

AnChat – E2E messenger on decentralized infrastructure, no phone number required

3•debros•1d ago•0 comments

AWS Console Degraded Worldwide?

2•asdfghjkltyuiop•1d ago•0 comments

Tell HN: My daily game won a Players Choice Award

20•paulhebert•2d ago•4 comments

I used 2D Base64 to bypass Gemini and expose Google's moderation flaws

7•MissMajordazure•1d ago•1 comments

Ask HN: How do we solve the bot flooding problem without destroying anonymity?

14•txrx0000•2d ago•19 comments

Ask HN: When do you expect ChatGPT moment in robotics?

10•p1esk•1d ago•18 comments

Ask HN: How will most Anthropic customers respond to the threats by the govt?

6•Poomba•1d ago•3 comments

I built AI agents that do the grunt work solo founders hate

5•Seleci•2d ago•6 comments

Garbage In, Garbage Out: The Degradation of Human Requirements in the LLM Era

9•waylake•2d ago•4 comments

Ask HN: Builder.ai ($1B Microsoft-backed AI company) who's lookin at the assets?

6•gamelock•2d ago•5 comments

I don't need AI to build me a new app. I need it to make Jira bearable

23•niel_hu•4d ago•18 comments

36yo: Career at home vs. Simple life abroad?

14•Slaboli•4d ago•36 comments

Super Editor – Atomic file editor with automatic backups (Python and Go)

6•larryste•3d ago•1 comments