Security News

Black Basta ransomware gang's internal chat logs leak online
2025-02-20 20:48

An unknown leaker has released what they claim to be an archive of internal Matrix chat logs belonging to the Black Basta ransomware operation. [...]

China-Linked Attackers Exploit Check Point Flaw to Deploy ShadowPad and Ransomware
2025-02-20 11:21

A previously unknown threat activity cluster targeted European organizations, particularly those in the healthcare sector, to deploy PlugX and its successor, ShadowPad, with the intrusions...

Ghost ransomware crew continues to haunt IT depts with scarily bad infosec
2025-02-20 08:41

FBI and CISA issue reminder - deep sigh - about the importance of patching and backups The operators of Ghost ransomware continue to claim victims and score payments, but keeping the crooks at bay...

New NailaoLocker ransomware used against EU healthcare orgs
2025-02-20 08:00

A previously undocumented ransomware payload named NailaoLocker has been spotted in attacks targeting European healthcare organizations between June and October 2024. [...]

Medusa ransomware gang demands $2M from UK private health services provider
2025-02-20 07:34

2.3 TB held to ransom as biz formerly known as Virgin Care tells us it's probing IT 'security incident' Exclusive HCRG Care Group, a private health and social services provider, has seemingly...

CISA and FBI: Ghost ransomware breached orgs in 70 countries
2025-02-19 20:55

CISA and the FBI said attackers deploying Ghost ransomware have breached victims from multiple industry sectors across over 70 countries, including critical infrastructure organizations. [...]

US newspaper publisher uses linguistic gymnastics to avoid saying its outage was due to ransomware
2025-02-18 17:00

Called it an 'incident' in SEC filing, but encrypted apps and data exfiltration suggest Lee just can’t say the R word US newspaper publisher Lee Enterprises is blaming its recent service...

BlackLock ransomware onslaught: What to expect and how to fight it
2025-02-18 16:19

BlackLock is on track to become the most active ransomware-as-a-service (RaaS) outfit in 2025, according to ReliaQuest. Its success is primarily due to their unusually active presence and good...

Lee Enterprises newspaper disruptions caused by ransomware attack
2025-02-18 12:35

Newspaper publishing giant Lee Enterprises has confirmed that a ransomware attack is behind ongoing disruptions impacting the group's operations for over two weeks. [...]

RansomHub Becomes 2024’s Top Ransomware Group, Hitting 600+ Organizations Globally
2025-02-14 10:17

The threat actors behind the RansomHub ransomware-as-a-service (RaaS) scheme have been observed leveraging now-patched security flaws in Microsoft Active Directory and the Netlogon protocol to...