frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

A timeline of cyber attacks:home users, contractors, and SMBs are now targets

3•EricAUS•1h ago
Over the last decade, the pattern in cyber attacks has shifted noticeably. Large enterprises still get headlines, but the most consistent victims are now home users, contractors, MSPs, and SMBs. Lower visibility, weaker controls, and reliance on cloud and 3rd party platforms have made these environments attractive to both criminal groups and state linked actors.

I put together a timeline of major attacks from 2016 to 2025 to show how this trend evolved. The text version is below for anyone who prefers reading it directly.

Timeline of attacks (2016–2025)

• 2016 — Mirai botnet DDoS Home users with consumer IoT devices were compromised and turned into a large DDoS botnet. Multiple criminal groups reused the leaked Mirai code. • 2017 — WannaCry ransomware Home users and SMBs were hit by a worm exploiting SMBv1. Widely attributed to the Lazarus Group. • 2017 — NotPetya wiper SMBs were affected by a destructive wiper disguised as ransomware. Linked to Russian state associated actors. • 2018–2020 — Emotet/TrickBot → Ryuk/Conti Credential theft and ransomware campaigns targeting SMBs. Operated by multiple criminal groups. • 2019 — Cloud and 3rd party breaches SMBs and home users impacted by weak access controls and data exposure across various cloud platforms. • 2020 — Toll Group ransomware Contractors and service providers disrupted by ransomware attacks affecting logistics operations. • 2020–2021 — SolarWinds supply chain breach 3rd party providers compromised via trojanized software updates. Attributed to a Russian state linked APT. • 2021 — Kaseya VSA ransomware MSPs and SMBs hit through a supply chain ransomware attack. Attributed to the REvil group. • 2021–2023 — Ransomware as a Service surge SMBs targeted by affiliate driven ransomware operations across multiple RaaS groups. • 2022–2024 — SaaS and 3rd party platform breaches Home users and SMB customers affected by credential theft and data exfiltration across cloud platforms. • 2023–2025 — Targeting MSPs and niche contractors

MSPs and specialised contractors targeted with ransomware, data theft, and extortion by both criminal and state linked actors.

I’ve been working on a Windows focused threat hunting tool (www.sapience-tech.com) aimed at home users and SMBs who don’t have EDR or SIEM tooling. It grew out of trying to help smaller environments spot early indicators of compromise without needing enterprise grade infrastructure. Happy to answer questions about the data, the timeline, or the approach.

Comments

OgsyedIE•53m ago
Why here and not substack?

Elevated Errors in Claude.ai

https://status.claude.com/incidents/yf48hzysrvl5
1•LostMyLogin•1m ago•0 comments

ChatGPT uninstalls surged by 295% after DoD deal

https://techcrunch.com/2026/03/02/chatgpt-uninstalls-surged-by-295-after-dod-deal/
2•Garbage•5m ago•0 comments

Lessons from HFTs: Flip Coins

https://yoss.gg
1•gigavega•8m ago•1 comments

The daily hub for AI coding tool updates

https://coding-tools-updates-hub.loveyouall.qzz.io/en
1•carloshmccarlos•9m ago•1 comments

Show HN: Lytok 2.0 – SDK for data serialization and structure notation

https://lytoklab.netlify.app/
1•joguel96•10m ago•0 comments

Show HN: A Puzzle Game Based on Non-Commutative Operations

https://commutators.games
1•alius•12m ago•0 comments

Consumer Electronics AI-Shopping Agent

https://www.rectangle.so
1•Waseemkhalo•17m ago•1 comments

Seeking Advice on Crypto Recovery Through Digital Asset Forensics

1•Mikechristian•17m ago•3 comments

Show HN: Paranoid Qrypto Offline/air-gapped/encryption(Argon2id+AES-256-GCM)

https://paranoidqrypto.com/
1•ParanoidQrypto•17m ago•0 comments

Cisco Donates Project CodeGuard to Coalition for Secure AI

https://www.oasis-open.org/2026/02/09/cisco-donates-project-codeguard-to-coalition-for-secure-ai/
1•mindcrime•19m ago•0 comments

Coasty hit #1 on OSWorld at 82% – an AI that does anything on a computer

https://coasty.ai/
2•PrateekJ17•20m ago•1 comments

Resist 'dangerous and socially unacceptable' age checks for social media

https://www.politico.eu/article/age-check-social-media-scientist-warning/
1•speckx•20m ago•1 comments

Show HN: CSV Analyzer – drag-and-drop data analysis with AI insights

https://csv-analyzer-green.vercel.app
1•atdl•21m ago•0 comments

Show HN: A Crop Value Calculator for Garden Horizons

https://gardenhorizonscalculator.co/
1•kristoff0601•22m ago•0 comments

Sugar Chronicles

https://earthchronicles.substack.com/p/sugar-chronicles
1•taguniversalm•23m ago•0 comments

Agents – Why are we not feeling challenged – or why does it not trigger fear?

https://medium.com/thoughts-and-dots/ai-agent-why-are-we-not-feeling-challenged-or-why-does-it-no...
1•ggonweb•24m ago•0 comments

WA state DOR guidance on removal of the penny

https://dor.wa.gov/laws-rules/interim_guidance_statements/interim-guidance-statement-regarding-el...
2•dosisod•25m ago•0 comments

Hey Dream AI

https://heydream.im/
1•Evan233•27m ago•1 comments

Device that can extract 1K liters of clean water a day from desert air revealed

https://www.tomshardware.com/tech-industry/device-that-can-extract-1-000-liters-of-clean-water-a-...
2•thunderbong•27m ago•0 comments

GPT-5.4-ab-arm3-840-1p-codexswic-ev3

2•agentifysh•29m ago•0 comments

Weather Buoy Part 2 – Electrical

https://earthchronicles.substack.com/p/weather-buoy-part-2-electrical
1•taguniversalm•31m ago•0 comments

Your Massive PR Is a Hostage Situation

https://twitter.com/0xb33bs/status/2028665242826203256
1•0xbeebs•36m ago•0 comments

Show HN: GitHub Commits Leaderboard

https://ghcommits.com
2•GustyCube•37m ago•0 comments

Show HN: Konform Browser v140.8.0-105 - Security-focused Firefox fork

https://codeberg.org/konform-browser/source/releases/tag/140.8.0.105
1•konform•39m ago•0 comments

Evolving Typst

https://laurmaedje.github.io/posts/evolving-typst/
2•todsacerdoti•41m ago•0 comments

Cloudflare uses lava lamps for randomness

https://www.cloudflare.com/en-au/learning/ssl/lava-lamp-encryption/
1•yuiegi•41m ago•0 comments

Arabic document from 17th-cent. rubbish heap confirms semi-legendary Nubian king

https://phys.org/news/2026-02-arabic-document-17th-century-rubbish.html
1•wglb•43m ago•1 comments

Amazon says drone strikes damaged 3 facilities in UAE and Bahrain

https://www.cnbc.com/2026/03/02/amazon-says-drone-strikes-damaged-3-facilities-in-uae-and-bahrain...
2•csomar•43m ago•1 comments

Show HN: Offline desktop tool that extracts media endpoints from raw HTML

https://z3r0dayzion-install.github.io/hypersnatch-site/
1•hypersnatch_dev•43m ago•1 comments

OpenClaw Exposure Watchboard

https://openclaw.allegro.earth/
34•fanweixiao•45m ago•14 comments