Security News

Trojanized KeePass opens doors for ransomware attackers
2025-05-20 11:03

A suspected initial access broker has been leveraging trojanized versions of the open-source KeePass password manager to set the stage for ransomware attacks, WithSecure researchers have...

Fake KeePass password manager leads to ESXi ransomware attack
2025-05-19 21:17

Threat actors have been distributing trojanized versions of the KeePass password manager for at least eight months to install Cobalt Strike beacons, steal credentials, and ultimately, deploy...

Ransomware Gangs Use Skitnet Malware for Stealthy Data Theft and Remote Access
2025-05-19 14:38

Several ransomware actors are using a malware called Skitnet as part of their post-exploitation efforts to steal sensitive data and establish remote control over compromised hosts. "Skitnet has...

Ransomware gangs increasingly use Skitnet post-exploitation malware
2025-05-16 14:00

Ransomware gang members increasingly use a new malware called Skitnet ("Bossnet") to perform stealthy post-exploitation activities on breached networks. [...]

Broadcom employee data stolen by ransomware crooks following hit on payroll provider
2025-05-16 13:32

The tech biz was in the process of dropping the payroll company as it learned of the breach EXCLUSIVE A ransomware attack at a Middle Eastern business partner of payroll company ADP has led to...

5 BCDR Essentials for Effective Ransomware Defense
2025-05-15 10:30

Ransomware has evolved into a deceptive, highly coordinated and dangerously sophisticated threat capable of crippling organizations of any size. Cybercriminals now exploit even legitimate IT tools...

Here's what we know about the DragonForce ransomware that hit Marks & Spencer
2025-05-15 06:32

Would you believe it, this RaaS cartel says Russia is off limits DragonForce, a new-ish ransomware-as-a-service operation, has given organizations another cyber threat to worry about — unless...

Ransomware gangs join ongoing SAP NetWeaver attacks
2025-05-14 17:39

Ransomware gangs have joined ongoing SAP NetWeaver attacks, exploiting a maximum-severity vulnerability that allows threat actors to gain remote code execution on vulnerable servers. [...]

Ransomware scum have put a target on the no man's land between IT and operations
2025-05-14 06:33

Defenses are weaker, and victims are more likely to pay, SANS warns Criminals who attempt to damage critical infrastructure are increasingly targeting the systems that sit between IT and operational tech.…

Ransomware spreads faster, not smarter
2025-05-14 04:00

The fall of two of the most dominant ransomware syndicates, LockBit and AlphV, triggered a power vacuum across the cybercriminal landscape, acccording to a Black Kite survey. In their place,...