Security News

Microsoft: Vanilla Tempest hackers hit healthcare with INC ransomware
2024-09-18 19:02

​Microsoft says a ransomware affiliate it tracks as Vanilla Tempest now targets U.S. healthcare organizations in INC ransomware attacks. [...]

Rhysida ransomware gang ships off Port of Seattle data for $6M
2024-09-17 16:45

Auction acts as payback after authority publicly refuses to pay up The trend of ransomware crews claiming to sell stolen data privately instead of leaking it online continues with Rhysida...

Ransomware gangs now abuse Microsoft Azure tool for data theft
2024-09-17 16:14

Ransomware gangs like BianLian and Rhysida increasingly use Microsoft's Azure Storage Explorer and AzCopy to steal data from breached networks and store it in Azure Blob storage. [...]

Port of Seattle hit by Rhysida ransomware in August attack
2024-09-13 22:54

Port of Seattle, the United States government agency overseeing Seattle's seaport and airport, confirmed on Friday that the Rhysida ransomware operation was behind a cyberattack impacting its...

Major sales and ops overhaul leads to much more activity ... for Meow ransomware gang
2024-09-11 18:45

You hate to see it The Meow ransomware group has grabbed the second most active gang spot in an unexpected surge in activity following a major brand overhaul.…

RansomHub ransomware abuses Kaspersky TDSSKiller to disable EDR software
2024-09-10 18:29

The RansomHub ransomware gang has been using TDSSKiller, a legitimate tool from Kaspersky, to disable endpoint detection and response (EDR) services on target systems. [...]

CosmicBeetle Deploys Custom ScRansom Ransomware, Partnering with RansomHub
2024-09-10 15:48

The threat actor known as CosmicBeetle has debuted a new custom ransomware strain called ScRansom in attacks targeting small- and medium-sized businesses (SMBs) in Europe, Asia, Africa, and South...

NoName ransomware gang deploying RansomHub malware in recent attacks
2024-09-10 10:35

The NoName ransomware gang has been trying to build a reputation for more than three years targeting small and medium-sized businesses worldwide with its encryptors and may now be working as a...

Critical SonicWall SSLVPN bug exploited in ransomware attacks
2024-09-09 21:50

Ransomware affiliates exploit a critical security vulnerability in SonicWall SonicOS firewall devices to breach victims' networks. [...]

Veeam Backup & Replication RCE flaw may soon be leveraged by ransomware gangs (CVE-2024-40711)
2024-09-09 11:45

CVE-2024-40711, a critical vulnerability affecting Veeam Backup & Replication (VBR), could soon be exploited by attackers to steal enterprise data. Discovered and reported by Code WHite researcher...