HackMyIP

Ransomware News

76 stories tagged Ransomware

← All cybersecurity news

2026-08-12Dark Reading
Ransomware Hits Colombia Justice Ministry Before Transition

Colombia’s Ministry of Justice and Law was hit by a ransomware attack only days before the country’s presidential transition, according to Dark Reading. The incident disrupted the ...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-08-11The Hacker News
DeadLock Ransomware Uses Polygon Smart Contracts to Hard-Proof Extortion

The DeadLock ransomware group has adopted a decentralized operational model that combines the Session messaging network with blockchain-backed services to make its extortion infras...

RansomwareEncryptionThreat Intel
Read More → Use Tool →
2026-08-11The Record
Cyberattacks Hit Local Governments in Four States, Disrupt 911 Services

A wave of cyberattacks has struck local governments across four U.S. states over the past week, disrupting 911 services, court operations, and essential public utilities. The most ...

RansomwareIncident ResponseMalware
Read More → Use Tool →
2026-08-11Dark Reading
Gunra Ransomware Gang Exploits Fortinet Flaws to Bypass MFA

The Gunra ransomware-as-a-service (RaaS) operation has emerged as a significant threat to critical infrastructure organizations, leveraging leaked Conti source code and weaponizing...

RansomwareVulnerabilityAuthentication
Read More → Use Tool →
2026-08-11The Record
The Gentlemen Ransomware Group Hijacks AnMed Facebook Page

Two weeks after a cyberattack disrupted its IT systems, nonprofit medical provider AnMed is still battling fallout after the threat actors behind the breach hijacked the organizati...

RansomwareData BreachIncident Response
Read More → Use Tool →
2026-08-10The Record
FBI Warns: Gunra Ransomware Exploits Fortinet Flaws to Hit Critical Infrastructure

The FBI and South Korea's National Policy Agency issued a joint cybersecurity advisory on Monday warning that the Gunra ransomware gang, which emerged in April 2025, is actively ta...

RansomwareVulnerabilityAPT
Read More → Use Tool →
2026-08-10The Hacker News
China-Linked Storm-1175 Deploys StormEncryptor via N-central Flaw

Microsoft Threat Intelligence has revealed that Storm-1175, a China-based financially motivated threat actor, has deployed a previously undocumented ransomware strain called StormE...

RansomwareAPTVulnerability
Read More → Use Tool →
2026-08-06The Hacker News
Ransom Cartel Creator Maksim Silnikau Sentenced to 16 Years

A federal judge in Alexandria, Virginia sentenced Belarusian national Maksim Silnikau to 16 years in prison on August 5, 2026, for building and operating Ransom Cartel, a ransomwar...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-08-03The Hacker News
INC Ransomware Dominates SonicWall SMA 1000 Zero-Day Exploitation

The INC Ransomware operation has rapidly become the "dominant threat actor" weaponizing recently disclosed flaws in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances....

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-07-30The Hacker News
Weekly Cyber Threats: XWorm Phishing, GenieLocker Ransomware, CastleLoader Surge

Threat actors continue refining their tradecraft this week, blending social engineering with multi-stage loaders to compromise organizations across manufacturing, finance, and reta...

MalwareRansomwarePhishing
Read More → Use Tool →
2026-07-28SecurityWeek
Origin Energy Breach Exposes Data of 900,000 Australian Customers

Australian energy giant Origin Energy has confirmed a significant data breach affecting approximately 900,000 current and former customers, exposing sensitive personal information ...

Data BreachRansomwarePrivacy
Read More → Use Tool →
2026-07-27Dark Reading
How Breaking Affiliate Trust Brought Down LockBit Ransomware Empire

In February 2024, the FBI and its international partners executed Operation Cronos, delivering what law enforcement officials called the most decisive blow against ransomware infra...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-07-27SecurityWeek
Coca-Cola Confirms Fairlife Data Breach After Anubis Ransomware Attack

Coca-Cola has confirmed that the recent ransomware attack on its dairy subsidiary Fairlife resulted in a data breach, with the Anubis ransomware group claiming to have stolen appro...

RansomwareData BreachIncident Response
Read More → Use Tool →
2026-07-27SecurityWeek
MCBS Data Breach Exposes 1.2 Million Records via PEAR Ransomware

Atlanta-based medical revenue cycle management company MCBS (Medical Computer Business Services) has disclosed that a September 2025 cyberattack compromised the personal data of mo...

RansomwareData BreachPrivacy
Read More → Use Tool →
2026-07-25The Hacker News
Cl0p Affiliates Exploit PTC Windchill Flaw for Unauthenticated RCE Attacks

Threat actors affiliated with the Cl0p ransomware operation—tracked under aliases including Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest—are actively exploiting intern...

RansomwareVulnerabilityData Breach
Read More → Use Tool →
2026-07-25The Hacker News
DevMan RaaS Portal v3 Centralizes Payload Builds and Affiliate Operations

The operators behind the DevMan ransomware-as-a-service (RaaS) scheme continue to run a dedicated web platform that lets affiliates generate payloads, track earnings, and coordinat...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-07-24SecurityWeek
AI-Powered Dolphin X Malware, Siemens Zero-Days, Stadler Ransomware: Weekly News

Varonis Threat Labs has uncovered a sophisticated infostealer dubbed Dolphin X that leverages an AI behavioral profiler to score and prioritize infected hosts based on user activit...

AI ThreatsZero-DayRansomware
Read More → Use Tool →
2026-07-23The Hacker News
Chaos Ransomware Hides C2 Traffic Inside Headless Browsers

The Chaos ransomware group has adopted a novel technique to conceal its command-and-control communications, routing traffic through the victim's own Chrome or Edge browser using a ...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-07-23Dark Reading
Ransomware Attack Cripples Japanese Frozen-Food Supplier, Disrupts KFC Supply Chain

A ransomware attack on a major Japanese food and logistics provider has disrupted frozen-food deliveries to thousands of restaurants across the country, sending ripples through one...

RansomwareSupply ChainIncident Response
Read More → Use Tool →
2026-07-21Dark Reading
Ransomware Surge Driven by Ecosystem Fragmentation, Not AI

The ransomware landscape is undergoing a significant transformation driven by ecosystem fragmentation rather than artificial intelligence advancements, according to researchers tra...

RansomwareThreat IntelMalware
Read More → Use Tool →
2026-07-21The Hacker News
Qilin Ransomware Exploits PAN-OS Authentication Bypass Vulnerability

Threat actors affiliated with the Qilin (also known as Agenda) ransomware-as-a-service (RaaS) operation have been weaponizing a now-patched high-severity flaw in Palo Alto Networks...

RansomwareVulnerabilityAuthentication
Read More → Use Tool →
2026-07-21The Hacker News
ENCFORGE Ransomware Hits AI Model Files via Langflow RCE Flaw

Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, an AI-agent-driven operator first documented earlier this month. The same threat actor ...

RansomwareVulnerabilityAI Security
Read More → Use Tool →
2026-07-17Dark Reading
Inc Ransomware Exploits SonicWall SMA Zero-Days for Root Access

The Inc Ransomware group has been observed weaponizing two previously undisclosed zero-day vulnerabilities in SonicWall Secure Mobile Access (SMA) appliances, chaining the flaws to...

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-07-17The Record
Fairlife Halts US Production After Ransomware Attack on Coca-Cola Unit

Coca-Cola's premium dairy subsidiary Fairlife has suspended operations at its US processing plants following a ransomware intrusion detected on Thursday. The company confirmed the ...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-07-17The Hacker News
Wrong Man Detained? Armenia Holds Russian Tourist in REvil Extradition Case

Armenian border officers at Yerevan's Zvartnots airport pulled Russian tourist Aleksandr Ermakov from the departure hall on June 28, 2026, detaining him on a U.S. extradition reque...

RansomwareThreat IntelIncident Response
Read More → Use Tool →
2026-07-15Dark Reading
Identity Attacks Eclipse Exploits as Top Ransomware Root Cause

Identity-based attacks have dethroned vulnerability exploits as the leading root cause of ransomware intrusions, marking a significant shift in attacker tradecraft, according to re...

RansomwareAuthenticationPhishing
Read More → Use Tool →
2026-07-14The Hacker News
U.S. Sanctions First VPN and Cryptor Seller for Aiding Ransomware

The U.S. Treasury Department's Office of Foreign Assets Control (OFAC) has imposed sanctions on two individuals and a VPN service provider for facilitating ransomware operations an...

RansomwareRegulationMalware
Read More → Use Tool →
2026-07-09The Hacker News
GodDamn Ransomware Uses Signed PoisonX Driver to Disable Endpoint Defenses

Symantec's Threat Hunter Team has identified a new ransomware family, dubbed GodDamn, that leverages a Microsoft-signed kernel driver called PoisonX to neutralize endpoint secur...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-07-04BleepingComputer
JadePuffer Ransomware: First Fully AI-Agent-Driven Attack Documented

Cloud security researchers at Sysdig have documented what may be the first ransomware operation executed entirely by an autonomous AI agent. Dubbed "JadePuffer," the campaign lever...

RansomwareAI ThreatsLLM Security
Read More → Use Tool →
2026-07-04The Hacker News
Union County Ohio Paid $1M in Bitcoin to Kairos Extortion Group

A U.S. government entity—almost certainly Union County, Ohio—paid roughly $1 million in bitcoin to a group calling itself Kairos to suppress the leak of stolen files, according to ...

RansomwareData BreachThreat Intel
Read More → Use Tool →
2026-07-03The Hacker News
Avalon Malware Framework Bundles Credential Theft with CrownX Ransomware

Blackpoint Cyber researchers Nevan Beal and Sam Decker have uncovered Avalon, a previously undocumented modular malware framework that consolidates credential harvesting, lateral m...

MalwareRansomwarePhishing
Read More → Use Tool →
2026-07-03SecurityWeek
Agentic AI Used in Ransomware Attack via Langflow CVE-2025-3248

A threat actor tracked as JadePuffer has executed what cloud security firm Sysdig describes as the first fully agentic AI-driven ransomware campaign, exploiting a critical missing ...

RansomwareAI ThreatsVulnerability
Read More → Use Tool →
2026-07-02The Hacker News
Anubis Ransomware Exploits Citrix Bleed 2 in Credential-Based Attacks

Threat actors tied to the Anubis ransomware-as-a-service (RaaS) operation have been actively exploiting Citrix Bleed 2 (CVE-2025-5777), a critical authentication-bypass flaw in Cit...

RansomwareVulnerabilitySupply Chain
Read More → Use Tool →
2026-07-02The Hacker News
Fake INTERPOL Ransomware, Claude Sandbox Flaw, Apple Hide My Email Bug Exposed

A wave of cyber incidents this week underscores how attackers continue to exploit trust in familiar brands and trusted infrastructure. Researchers at Bitdefender uncovered a phishi...

RansomwarePhishingAI Security
Read More → Use Tool →
2026-07-02The Hacker News
AI Agent JADEPUFFER Runs First End-to-End Ransomware Attack via Langflow RCE

Security firm Sysdig has uncovered what it calls the first ransomware campaign executed end-to-end by an AI agent, tracked as JADEPUFFER. A large language model handled every stage...

RansomwareAI ThreatsVulnerability
Read More → Use Tool →
2026-06-27Dark Reading
Third-Party Breaches Cost Education Sector Millions in Vendor Risk

The education sector continues to absorb punishing blows from third-party breaches, with ransomware groups like Cl0p exploiting software vulnerabilities in vendors to cascade damag...

Supply ChainData BreachRansomware
Read More → Use Tool →
2026-06-24BleepingComputer
Mistic Backdoor: New Stealth Malware Linked to KongTuke Access Broker

Symantec researchers have uncovered a new stealthy backdoor dubbed "Mistic" being deployed by KongTuke (also tracked as Woodgnat), a financially motivated initial access broker act...

MalwareRansomwareThreat Intel
Read More → Use Tool →
2026-06-23KrebsOnSecurity
Scattered Spider Members Plead Guilty in Transport for London Cyberattack

Two key members of the prolific cybercrime group Scattered Spider pleaded guilty on the opening day of their six-week trial at a UK court. Thalha Jubair, 20, of East London, and 18...

RansomwarePhishingAuthentication
Read More → Use Tool →
2026-06-20BleepingComputer
Prinz Eugen Ransomware Targets Recent Files First in Go-Based Attack

A newly identified ransomware operation dubbed ‘Prinz Eugen’ is turning heads in the cybersecurity community for an unusual encryption strategy: prioritizing recently modified file...

RansomwareMalwareEncryption
Read More → Use Tool →
2026-06-19The Hacker News
The Gentlemen RaaS Deploys GentleKiller to Disable 400 EDR Processes

The Gentlemen ransomware-as-a-service (RaaS) operation has emerged as one of the most technically agile cybercrime crews since launching in March 2025, according to ESET researcher...

RansomwareMalware
Read More → Use Tool →
2026-06-18BleepingComputer
Gentlemen Ransomware Uses 8 EDR Killer Variants to Disable Defenses

The Gentlemen ransomware-as-a-service (RaaS) operation is actively maintaining a sophisticated suite of endpoint detection and response (EDR) killers to help its affiliates evade d...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-18BleepingComputer
Nintendo Confirms TinyPulse Data Breach as Shadowbyt3$ Demands $2M Ransom

Nintendo of America has confirmed that threat actors stole internal survey data from TinyPulse, a third-party employee engagement platform owned by WebMD Health Services, but stres...

Data BreachSupply ChainRansomware
Read More → Use Tool →
2026-06-18The Hacker News
INC Ransomware Hits 830+ Victims Since 2023 — RaaS Giant Reshapes Cybercrime

INC Ransomware has cemented its position as one of the most prolific ransomware-as-a-service (RaaS) operations in 2026, claiming more than 830 victims since its emergence in August...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-17Dark Reading
INC Ransomware Targets Healthcare with Pressure-Driven Tactics

INC Ransomware has emerged as one of the most operationally disciplined ransomware groups active in 2024-2025, achieving consistent success not through novel exploit chains or zero...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-12BleepingComputer
Conti Ransomware Operator Pleads Guilty to Wire Fraud Conspiracy

A Ukrainian national extradited from Ireland to the United States has pleaded guilty to conspiracy to commit wire fraud for his role in the Conti ransomware operation, the U.S. Dep...

RansomwareMalwareData Breach
Read More → Use Tool →
2026-06-12The Hacker News
Europol Shuts Down AudiA6 Crypto Laundering Ring Used by Ransomware Gangs

Europol has announced the takedown of AudiA6, an industrial-scale cryptocurrency laundering service that processed more than €336 million (~$389 million) in illicit funds since lau...

RansomwareThreat IntelIncident Response
Read More → Use Tool →
2026-06-11The Hacker News
The Gentlemen Ransomware Tied to 478 Victims, Uses AI and Worm Spreading

A new deep-dive into The Gentlemen ransomware operation reveals that the financially motivated threat group has claimed 478 victims since emerging in March 2025, and now operates a...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-11BleepingComputer
Europol Dismantles AudiA6 Crypto-Laundering Hub Tied to Ransomware Gangs

Law enforcement agencies across 11 countries have jointly dismantled "AudiA6," a cryptocurrency laundering service that processed more than $380 million in illicit proceeds for ran...

RansomwareThreat IntelIncident Response
Read More → Use Tool →
2026-06-09The Hacker News
Critical Veeam Backup RCE Flaw (CVE-2026-44963) Lets Domain Users Execute Code

Veeam has shipped an emergency patch for a critical remote code execution vulnerability in its widely deployed Backup & Replication platform. Tracked as CVE-2026-44963, the flaw ca...

VulnerabilityRansomwareCloud Security
Read More → Use Tool →
2026-06-06The Hacker News
CISA Adds SolarWinds Serv-U DoS Flaw CVE-2026-28318 to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity denial-of-service vulnerability in SolarWinds Serv-U to its Known Exploited Vulnerabiliti...

VulnerabilityIncident ResponseRansomware
Read More → Use Tool →
2026-05-25The Hacker News
GitHub Breach Exposes 3,800 Repos: Supply Chain Attacks Intensify

GitHub has officially confirmed that a sophisticated supply chain attack compromised its internal repositories, resulting in the exfiltration of approximately 3,800 repositories by...

Supply ChainData BreachRansomware
Read More → Use Tool →
2026-05-22The Hacker News
Operation Saffron Takes Down First VPN Used by 25 Ransomware Groups

Authorities in Europe and North America have successfully dismantled First VPN, a criminal VPN service specifically designed to anonymize ransomware operations and other cyberattac...

RansomwareThreat IntelPrivacy
Read More → Use Tool →
2026-05-13BleepingComputer
West Pharma Cyberattack: Data Stolen, Systems Encrypted

West Pharmaceutical Services, a $3 billion S&P 500 drug‑packaging firm, disclosed on May 13, 2026 that it was hit by a material cyberattack. The company detected the intrusion on M...

Data BreachRansomware
Read More → Use Tool →
2026-05-08SecurityWeek
Thousands of Schools Hit by Ransomware on Canvas LMS as Finals Near

Thousands of schools and universities across the United States and Canada were thrust into disarray this week after the popular learning management system (LMS) Canvas, developed b...

RansomwareSupply ChainIncident Response
Read More → Use Tool →
2026-05-08SecurityWeek
RansomHouse Ransomware Breach: Trellix Internal Services Exposed

RansomHouse, a known ransomware operation, has claimed responsibility for a breach at Trellix, a prominent cybersecurity vendor. The group posted several screenshots on a dark‑web ...

RansomwareData BreachThreat Intel
Read More → Use Tool →
2026-05-08The Record
Canvas Cyberattack Forces Universities to Reschedule Final Exams

On Thursday, May 30 2025, a coordinated cyber incident hit Instructure's Canvas learning management system, displaying a ransom note from an unidentified cybercriminal group to stu...

Data BreachSupply ChainRansomware
Read More → Use Tool →
2026-05-08BleepingComputer
RansomHouse Claims Trellix Source Code Breach – What You Need to Know

Trellix, a prominent cybersecurity vendor, disclosed on [date] that its internal source‑code repository had been compromised. The intrusion was promptly claimed by the RansomHouse ...

Data BreachRansomwareSupply Chain
Read More → Use Tool →
2026-05-08KrebsOnSecurity
Canvas Data Breach Hits US Schools: Ransomware, Zero‑Day Exploit Disrupts Classes

A massive data‑extortion campaign slammed the widely‑used learning‑management platform Canvas on Tuesday, forcing districts and universities across the United States to suspend onl...

Data BreachRansomware
Read More → Use Tool →
2026-05-07BleepingComputer
Modern Attacks Demand Security & Recovery: Webinar Insights

Modern cyber‑threats have evolved beyond the initial breach, with adversaries now targeting backup systems, encryption keys, and recovery pipelines to maximize impact. A new webina...

RansomwareIncident Response
Read More → Use Tool →
2026-05-06The Hacker News
MuddyWater APT Uses Microsoft Teams in Credential Theft Attack

The Iranian state-sponsored threat actor MuddyWater, also tracked as Mango Sandstorm, Seedworm, and Static Kitten, has been linked to a sophisticated cyberattack that leveraged Mic...

APTPhishingRansomware
Read More → Use Tool →
2026-05-06BleepingComputer
Ransomware Targets Backup Systems Before Encryption: Acronis

Acronis researchers have documented a systematic shift in ransomware operations: before triggering encryption, threat actors now deliberately cripple backup infrastructure. Their 2...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-05-06BleepingComputer
MuddyWater Deploys Chaos Ransomware Decoy Using Microsoft Teams

MuddyWater, the Iranian advanced persistent threat (APT) group also tracked as Static Kitten, has been observed disguising its espionage operations behind a non‑functional Chaos ra...

APTRansomwarePhishing
Read More → Use Tool →
2026-05-05BleepingComputer
Latvian Gets 8.5 Years for Karakurt Ransomware Negotiator Role

A Latvian national was sentenced on Friday to 8.5 years in a U.S. federal prison after being extradited to face charges related to his work as a "cold case" negotiator for the Russ...

RansomwareThreat Intel
Read More → Use Tool →
2026-05-04BleepingComputer
MSPs: Strengthen Security & Backup with SaaS BCDR

Kaseya announced a live webinar titled “Why MSPs must rethink security and backup strategies” scheduled for June 15, 2026 at 2:00 PM ET. The session, hosted by Kaseya’s Product Mar...

Cloud SecurityIncident ResponseRansomware
Read More → Use Tool →
2026-05-02BleepingComputer
Critical cPanel Flaw CVE-2026-41940 Fueling 'Sorry' Ransomware Attacks

A newly disclosed vulnerability in cPanel, tracked as CVE-2026-41940, is being actively exploited in the wild as part of a coordinated ransomware campaign dubbed "Sorry." Security ...

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-05-01The Hacker News
Cybersecurity Pros Sentenced 4 Years for BlackCat Ransomware Role

The U.S. Department of Justice announced that two former cybersecurity professionals have each been sentenced to four years in federal prison for their roles in enabling BlackCat r...

RansomwareIncident ResponseMalware
Read More → Use Tool →
2026-05-01BleepingComputer
Former Employees Sentenced 4 Years for BlackCat Ransomware Attacks

A federal court has sentenced two former cybersecurity incident response professionals to four years in prison each for their roles in conducting BlackCat (ALPHV) ransomware attack...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-04-29Dark Reading
Vect 2.0 Ransomware Wiper Flaw Exposes TeamPCP Supply Chain Risks

A newly identified ransomware strain named Vect 2.0 has been observed executing wiper‑style attacks against organizations compromised through the TeamPCP software supply chain. The...

RansomwareSupply ChainMalware
Read More → Use Tool →
2026-04-28Dark Reading
Feuding Ransomware Groups 0APT and KryBit Expose Each Other's Operations

The ransomware ecosystem was rocked in early 2026 when two prominent ransomware‑as‑a‑service (RaaS) operations, 0APT and KryBit, turned on each other, spilling a treasure trove of ...

RansomwareAPTThreat Intel
Read More → Use Tool →
2026-04-28The Hacker News
VECT 2.0 Ransomware Wipes Files Over 131KB on Windows, Linux, ESXi

The cyber‑crime group behind the VECT 2.0 ransomware has been observed deploying a strain that behaves more like a data‑wiper than conventional ransomware. In recent incidents targ...

RansomwareMalwareVulnerability
Read More → Use Tool →
2026-04-23Dark Reading
Africa Cyberattack Volume Falls 22% as Hackers Target Latin America

According to the latest Dark Reading analysis, the weekly number of cyberattacks directed at African organizations dropped by 22 % over the past year, falling from roughly 5,400 in...

Threat IntelAPTRansomware
Read More → Use Tool →
2026-04-22Dark Reading
The Gentlemen Ransomware Gang Surges in Sophistication and Speed

Security researchers at multiple threat intelligence firms have observed a significant acceleration in The Gentlemen ransomware group's operational tempo and technical capabilities...

RansomwareThreat IntelMalware
Read More → Use Tool →
2026-04-21Dark Reading
Ransomware Negotiator Pleads Guilty to BlackCat Scheme

On March 12, 2024, former incident‑response negotiator David Mercer entered a guilty plea in the U.S. District Court for the Eastern District of New York to one count of conspiracy...

RansomwareIncident Response
Read More → Use Tool →
2026-04-21Dark Reading
Bomgar RMM Flaw CVE-2026-1731 Enables Ransomware Supply Chain Attacks

Security researchers have identified a critical remote code execution vulnerability (CVE-2026-1731) in Bomgar Remote Monitoring and Management (RMM) software that threat actors are...

VulnerabilityRansomwareSupply Chain
Read More → Use Tool →
2026-04-06KrebsOnSecurity
Germany Doxes 'UNKN', Head of REvil & GandCrab Ransomware Gangs

German authorities have publicly exposed the identity of the notorious hacker known as "UNKN", linking the alias to 31‑year‑old Russian national Daniil Maksimov. Maksimov is allege...

RansomwareThreat IntelPrivacy
Read More → Use Tool →
2022-08-26Threatpost
Lockbit Leads Summer Ransomware Surge; Conti Offshoots Follow

In the summer of 2024, LockBit solidified its standing as the most prolific ransomware‑as‑a‑service (RaaS) operation, accounting for roughly 35 % of all ransomware incidents tracke...

RansomwareMalware
Read More → Use Tool →