HackMyIP

網路安全資訊

來自頂級安全媒體的最新動態

2026-06-27Dark Reading
Third-Party Breaches Cost Education Sector Millions in Vendor Risk

The education sector continues to absorb punishing blows from third-party breaches, with ransomware groups like Cl0p exploiting software vulnerabilities in vendors to cascade damag...

Supply ChainData BreachRansomware
Read More → Use Tool →
2026-06-24BleepingComputer
Mistic Backdoor: New Stealth Malware Linked to KongTuke Access Broker

Symantec researchers have uncovered a new stealthy backdoor dubbed "Mistic" being deployed by KongTuke (also tracked as Woodgnat), a financially motivated initial access broker act...

MalwareRansomwareThreat Intel
Read More → Use Tool →
2026-06-20BleepingComputer
Prinz Eugen Ransomware Targets Recent Files First in Go-Based Attack

A newly identified ransomware operation dubbed ‘Prinz Eugen’ is turning heads in the cybersecurity community for an unusual encryption strategy: prioritizing recently modified file...

RansomwareMalwareEncryption
Read More → Use Tool →
2026-06-19The Hacker News
The Gentlemen RaaS Deploys GentleKiller to Disable 400 EDR Processes

The Gentlemen ransomware-as-a-service (RaaS) operation has emerged as one of the most technically agile cybercrime crews since launching in March 2025, according to ESET researcher...

RansomwareMalware
Read More → Use Tool →
2026-06-18BleepingComputer
Gentlemen Ransomware Uses 8 EDR Killer Variants to Disable Defenses

The Gentlemen ransomware-as-a-service (RaaS) operation is actively maintaining a sophisticated suite of endpoint detection and response (EDR) killers to help its affiliates evade d...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-18BleepingComputer
Nintendo Confirms TinyPulse Data Breach as Shadowbyt3$ Demands $2M Ransom

Nintendo of America has confirmed that threat actors stole internal survey data from TinyPulse, a third-party employee engagement platform owned by WebMD Health Services, but stres...

Data BreachSupply ChainRansomware
Read More → Use Tool →
2026-06-18The Hacker News
INC Ransomware Hits 830+ Victims Since 2023 — RaaS Giant Reshapes Cybercrime

INC Ransomware has cemented its position as one of the most prolific ransomware-as-a-service (RaaS) operations in 2026, claiming more than 830 victims since its emergence in August...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-17Dark Reading
INC Ransomware Targets Healthcare with Pressure-Driven Tactics

INC Ransomware has emerged as one of the most operationally disciplined ransomware groups active in 2024-2025, achieving consistent success not through novel exploit chains or zero...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-12BleepingComputer
Conti Ransomware Operator Pleads Guilty to Wire Fraud Conspiracy

A Ukrainian national extradited from Ireland to the United States has pleaded guilty to conspiracy to commit wire fraud for his role in the Conti ransomware operation, the U.S. Dep...

RansomwareMalwareData Breach
Read More → Use Tool →
2026-06-12The Hacker News
Europol Shuts Down AudiA6 Crypto Laundering Ring Used by Ransomware Gangs

Europol has announced the takedown of AudiA6, an industrial-scale cryptocurrency laundering service that processed more than €336 million (~$389 million) in illicit funds since lau...

RansomwareThreat IntelIncident Response
Read More → Use Tool →
2026-06-11The Hacker News
The Gentlemen Ransomware Tied to 478 Victims, Uses AI and Worm Spreading

A new deep-dive into The Gentlemen ransomware operation reveals that the financially motivated threat group has claimed 478 victims since emerging in March 2025, and now operates a...

RansomwareMalwareThreat Intel
Read More → Use Tool →
2026-06-11BleepingComputer
Europol Dismantles AudiA6 Crypto-Laundering Hub Tied to Ransomware Gangs

Law enforcement agencies across 11 countries have jointly dismantled "AudiA6," a cryptocurrency laundering service that processed more than $380 million in illicit proceeds for ran...

RansomwareThreat IntelIncident Response
Read More → Use Tool →
2026-06-09The Hacker News
Critical Veeam Backup RCE Flaw (CVE-2026-44963) Lets Domain Users Execute Code

Veeam has shipped an emergency patch for a critical remote code execution vulnerability in its widely deployed Backup & Replication platform. Tracked as CVE-2026-44963, the flaw ca...

VulnerabilityRansomwareCloud Security
Read More → Use Tool →
2026-06-06The Hacker News
CISA Adds SolarWinds Serv-U DoS Flaw CVE-2026-28318 to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity denial-of-service vulnerability in SolarWinds Serv-U to its Known Exploited Vulnerabiliti...

VulnerabilityIncident ResponseRansomware
Read More → Use Tool →
2026-05-25The Hacker News
GitHub Breach Exposes 3,800 Repos: Supply Chain Attacks Intensify

GitHub has officially confirmed that a sophisticated supply chain attack compromised its internal repositories, resulting in the exfiltration of approximately 3,800 repositories by...

Supply ChainData BreachRansomware
Read More → Use Tool →
2026-05-22The Hacker News
Operation Saffron Takes Down First VPN Used by 25 Ransomware Groups

Authorities in Europe and North America have successfully dismantled First VPN, a criminal VPN service specifically designed to anonymize ransomware operations and other cyberattac...

RansomwareThreat IntelPrivacy
Read More → Use Tool →
2026-05-13BleepingComputer
West Pharma Cyberattack: Data Stolen, Systems Encrypted

West Pharmaceutical Services, a $3 billion S&P 500 drug‑packaging firm, disclosed on May 13, 2026 that it was hit by a material cyberattack. The company detected the intrusion on M...

Data BreachRansomware
Read More → Use Tool →
2026-05-08SecurityWeek
Thousands of Schools Hit by Ransomware on Canvas LMS as Finals Near

Thousands of schools and universities across the United States and Canada were thrust into disarray this week after the popular learning management system (LMS) Canvas, developed b...

RansomwareSupply ChainIncident Response
Read More → Use Tool →
2026-05-08SecurityWeek
RansomHouse Ransomware Breach: Trellix Internal Services Exposed

RansomHouse, a known ransomware operation, has claimed responsibility for a breach at Trellix, a prominent cybersecurity vendor. The group posted several screenshots on a dark‑web ...

RansomwareData BreachThreat Intel
Read More → Use Tool →
2026-05-08The Record
Canvas Cyberattack Forces Universities to Reschedule Final Exams

On Thursday, May 30 2025, a coordinated cyber incident hit Instructure's Canvas learning management system, displaying a ransom note from an unidentified cybercriminal group to stu...

Data BreachSupply ChainRansomware
Read More → Use Tool →
2026-05-08BleepingComputer
RansomHouse Claims Trellix Source Code Breach – What You Need to Know

Trellix, a prominent cybersecurity vendor, disclosed on [date] that its internal source‑code repository had been compromised. The intrusion was promptly claimed by the RansomHouse ...

Data BreachRansomwareSupply Chain
Read More → Use Tool →
2026-05-08KrebsOnSecurity
Canvas Data Breach Hits US Schools: Ransomware, Zero‑Day Exploit Disrupts Classes

A massive data‑extortion campaign slammed the widely‑used learning‑management platform Canvas on Tuesday, forcing districts and universities across the United States to suspend onl...

Data BreachRansomware
Read More → Use Tool →
2026-05-07BleepingComputer
Modern Attacks Demand Security & Recovery: Webinar Insights

Modern cyber‑threats have evolved beyond the initial breach, with adversaries now targeting backup systems, encryption keys, and recovery pipelines to maximize impact. A new webina...

RansomwareIncident Response
Read More → Use Tool →
2026-05-06The Hacker News
MuddyWater APT Uses Microsoft Teams in Credential Theft Attack

The Iranian state-sponsored threat actor MuddyWater, also tracked as Mango Sandstorm, Seedworm, and Static Kitten, has been linked to a sophisticated cyberattack that leveraged Mic...

APTPhishingRansomware
Read More → Use Tool →
2026-05-06BleepingComputer
Ransomware Targets Backup Systems Before Encryption: Acronis

Acronis researchers have documented a systematic shift in ransomware operations: before triggering encryption, threat actors now deliberately cripple backup infrastructure. Their 2...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-05-06BleepingComputer
MuddyWater Deploys Chaos Ransomware Decoy Using Microsoft Teams

MuddyWater, the Iranian advanced persistent threat (APT) group also tracked as Static Kitten, has been observed disguising its espionage operations behind a non‑functional Chaos ra...

APTRansomwarePhishing
Read More → Use Tool →
2026-05-05BleepingComputer
Latvian Gets 8.5 Years for Karakurt Ransomware Negotiator Role

A Latvian national was sentenced on Friday to 8.5 years in a U.S. federal prison after being extradited to face charges related to his work as a "cold case" negotiator for the Russ...

RansomwareThreat Intel
Read More → Use Tool →
2026-05-04BleepingComputer
MSPs: Strengthen Security & Backup with SaaS BCDR

Kaseya announced a live webinar titled “Why MSPs must rethink security and backup strategies” scheduled for June 15, 2026 at 2:00 PM ET. The session, hosted by Kaseya’s Product Mar...

Cloud SecurityIncident ResponseRansomware
Read More → Use Tool →
2026-05-02BleepingComputer
Critical cPanel Flaw CVE-2026-41940 Fueling 'Sorry' Ransomware Attacks

A newly disclosed vulnerability in cPanel, tracked as CVE-2026-41940, is being actively exploited in the wild as part of a coordinated ransomware campaign dubbed "Sorry." Security ...

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-05-01The Hacker News
Cybersecurity Pros Sentenced 4 Years for BlackCat Ransomware Role

The U.S. Department of Justice announced that two former cybersecurity professionals have each been sentenced to four years in federal prison for their roles in enabling BlackCat r...

RansomwareIncident ResponseMalware
Read More → Use Tool →
2026-05-01BleepingComputer
Former Employees Sentenced 4 Years for BlackCat Ransomware Attacks

A federal court has sentenced two former cybersecurity incident response professionals to four years in prison each for their roles in conducting BlackCat (ALPHV) ransomware attack...

RansomwareIncident ResponseThreat Intel
Read More → Use Tool →
2026-04-29Dark Reading
Vect 2.0 Ransomware Wiper Flaw Exposes TeamPCP Supply Chain Risks

A newly identified ransomware strain named Vect 2.0 has been observed executing wiper‑style attacks against organizations compromised through the TeamPCP software supply chain. The...

RansomwareSupply ChainMalware
Read More → Use Tool →
2026-04-28Dark Reading
Feuding Ransomware Groups 0APT and KryBit Expose Each Other's Operations

The ransomware ecosystem was rocked in early 2026 when two prominent ransomware‑as‑a‑service (RaaS) operations, 0APT and KryBit, turned on each other, spilling a treasure trove of ...

RansomwareAPTThreat Intel
Read More → Use Tool →
2026-04-28The Hacker News
VECT 2.0 Ransomware Wipes Files Over 131KB on Windows, Linux, ESXi

The cyber‑crime group behind the VECT 2.0 ransomware has been observed deploying a strain that behaves more like a data‑wiper than conventional ransomware. In recent incidents targ...

RansomwareMalwareVulnerability
Read More → Use Tool →
2026-04-23Dark Reading
Africa Cyberattack Volume Falls 22% as Hackers Target Latin America

According to the latest Dark Reading analysis, the weekly number of cyberattacks directed at African organizations dropped by 22 % over the past year, falling from roughly 5,400 in...

Threat IntelAPTRansomware
Read More → Use Tool →
2026-04-22Dark Reading
The Gentlemen Ransomware Gang Surges in Sophistication and Speed

Security researchers at multiple threat intelligence firms have observed a significant acceleration in The Gentlemen ransomware group's operational tempo and technical capabilities...

RansomwareThreat IntelMalware
Read More → Use Tool →
2026-04-21Dark Reading
Ransomware Negotiator Pleads Guilty to BlackCat Scheme

On March 12, 2024, former incident‑response negotiator David Mercer entered a guilty plea in the U.S. District Court for the Eastern District of New York to one count of conspiracy...

RansomwareIncident Response
Read More → Use Tool →
2026-04-21Dark Reading
Bomgar RMM Flaw CVE-2026-1731 Enables Ransomware Supply Chain Attacks

Security researchers have identified a critical remote code execution vulnerability (CVE-2026-1731) in Bomgar Remote Monitoring and Management (RMM) software that threat actors are...

VulnerabilityRansomwareSupply Chain
Read More → Use Tool →
2026-04-06KrebsOnSecurity
Germany Doxes 'UNKN', Head of REvil & GandCrab Ransomware Gangs

German authorities have publicly exposed the identity of the notorious hacker known as "UNKN", linking the alias to 31‑year‑old Russian national Daniil Maksimov. Maksimov is allege...

RansomwareThreat IntelPrivacy
Read More → Use Tool →
2022-08-26Threatpost
Lockbit Leads Summer Ransomware Surge; Conti Offshoots Follow

In the summer of 2024, LockBit solidified its standing as the most prolific ransomware‑as‑a‑service (RaaS) operation, accounting for roughly 35 % of all ransomware incidents tracke...

RansomwareMalware
Read More → Use Tool →