Government entities in Asia-Pacific and North America are being targeted with an off-the-shelf malware downloader known as PureCrypter, which delivers information stealers and #ransomware.
Learn more: https://thehackernews.com/2023/02/purecrypter-malware-targets-government.html
Learn more: https://thehackernews.com/2023/02/purecrypter-malware-targets-government.html
π13β‘7π€―3π2π2
New IcedID Lite and Forked malware variants discovered!
Threat actors pivot away from banking fraud functionality to focus on payload delivery, including #ransomware.
Learn more: https://thehackernews.com/2023/03/icedid-malware-shifts-focus-from.html
Threat actors pivot away from banking fraud functionality to focus on payload delivery, including #ransomware.
Learn more: https://thehackernews.com/2023/03/icedid-malware-shifts-focus-from.html
β‘10π6π€―3π₯1π1
π Meet the rising cybercriminal gang, "Read The Manual" Locker! Operating as a private RaaS provider, this group has a business-like set-up & sophisticated tactics.
Learn about their unique approach to #ransomware in the latest report: https://thehackernews.com/2023/04/rtm-locker-emerging-cybercrime-group.html
Learn about their unique approach to #ransomware in the latest report: https://thehackernews.com/2023/04/rtm-locker-emerging-cybercrime-group.html
π₯15π10π€4π2π2β‘1
π Yet another critical SQL injection vulnerability (CVE-2023-36934) uncovered in popular MOVEit Transferβthe same software that was exploited in a series of recent cyberattacks to deploy Clop #ransomware.
Read details: https://thehackernews.com/2023/07/another-critical-unauthenticated-sqli.html
Read details: https://thehackernews.com/2023/07/another-critical-unauthenticated-sqli.html
π19π€4π3
π¨ Unpatched Citrix systems under attack! Unknown threat actors are exploiting a critical vulnerability (CVE-2023-3519) for #ransomware attacks.
Read details: https://thehackernews.com/2023/08/citrix-netscaler-alert-ransomware.html
Read details: https://thehackernews.com/2023/08/citrix-netscaler-alert-ransomware.html
π₯14π9π7
A new #ransomware group, Hunters International, has taken over the reins from Hive, acquiring its source code and infrastructure.
Read the full article here: https://thehackernews.com/2023/11/new-ransomware-group-emerges-with-hives.html
Read the full article here: https://thehackernews.com/2023/11/new-ransomware-group-emerges-with-hives.html
π₯22π9π2π€2π€―1
Kasseika, the latest #ransomware kid on the block, is using a sneaky trick called BYOVD to disarm your defenses before encrypting your files.
It even leaves no trace by wiping event logs.
Learn more: https://thehackernews.com/2024/01/kasseika-ransomware-using-byovd-trick.html
It even leaves no trace by wiping event logs.
Learn more: https://thehackernews.com/2024/01/kasseika-ransomware-using-byovd-trick.html
π±10π7π7π€3
U.S. State Department is offering rewards up to $15 Million for information on LockBit #ransomware leaders.
Learn more: https://thehackernews.com/2024/02/us-offers-15-million-bounty-to-hunt.html
Learn more: https://thehackernews.com/2024/02/us-offers-15-million-bounty-to-hunt.html
π10π8π6β‘4π₯2π€2π±1
π¨ ALERT: RansomHub, a rebranded Knight #ransomware, targets healthcare and major entities.
Using legitimate remote desktop tools and recruiting from shutdown groups, it shows evolving cybercriminal tactics.
Learn more: https://thehackernews.com/2024/06/rebranded-knight-ransomware-targeting.html
Using legitimate remote desktop tools and recruiting from shutdown groups, it shows evolving cybercriminal tactics.
Learn more: https://thehackernews.com/2024/06/rebranded-knight-ransomware-targeting.html
π16π₯6π€―1
π¨ Cyberattacks are the 1 threat to businesses. Recent study shows that phishing, identity security & ransomware are top concerns for CISOs.
Last quarter, the first individual #ransomware loss exceeded a billion dollars.
Learn more: https://thehackernews.com/expert-insights/2024/06/the-democratization-of-cyberattacks-how.html
Last quarter, the first individual #ransomware loss exceeded a billion dollars.
Learn more: https://thehackernews.com/expert-insights/2024/06/the-democratization-of-cyberattacks-how.html
π7π€5π3π₯2
π¨ A 17-year-old suspected member of the Scattered Spider cybercrime syndicate has been arrested in the U.K.
This group has targeted major companies, including MGM Resorts, with #ransomware.
Read here: https://thehackernews.com/2024/07/17-year-old-linked-to-scattered-spider.html
This group has targeted major companies, including MGM Resorts, with #ransomware.
Read here: https://thehackernews.com/2024/07/17-year-old-linked-to-scattered-spider.html
π±28π21π₯7π7π€―6
A new #ransomware variant, Cicada3301, is making headlines for its advanced tactics and SMB focus. Cicada3301 not only targets Windows and #Linux/ESXi systems but also embeds compromised user credentials for further exploitation.
https://thehackernews.com/2024/09/new-rust-based-ransomware-cicada3301.html
https://thehackernews.com/2024/09/new-rust-based-ransomware-cicada3301.html
π±21π5π3β‘1π€―1
CosmicBeetle launches ScRansom, new #ransomware hitting SMBs globally. Linked to RansomHub, it targets manufacturing, healthcare, tech & more. Exploits vulnerabilities for sophisticated attacks.
Learn more: https://thehackernews.com/2024/09/cosmicbeetle-deploys-custom-scransom.html
Learn more: https://thehackernews.com/2024/09/cosmicbeetle-deploys-custom-scransom.html
π9π₯3π3π€1
π Microsoft 365 launches a new backup solution to combat #ransomware, enabling rapid recovery. Read more to learn how this could impact your data protection strategy.
Read: https://thehackernews.com/expert-insights/2024/09/the-microsoft-365-backup-game-just.html
Read: https://thehackernews.com/expert-insights/2024/09/the-microsoft-365-backup-game-just.html
π17π6π₯5π3
π Learn how weak credentials and over-privileged accounts are being exploited in the latest Storm-0501 #ransomware attacks targeting hybrid cloud infrastructures.
Read details here > https://thehackernews.com/2024/09/microsoft-identifies-storm-0501-as.html
Read details here > https://thehackernews.com/2024/09/microsoft-identifies-storm-0501-as.html
π13π€2
Microsoft 365 is a prime #ransomware target, with hackers exploiting weak points to encrypt vital business data. Its widespread use across 400M+ users makes a breach devastating.
Stay protectedβimplement proactive defense strategies now: https://thehackernews.com/2024/09/why-microsoft-365-protection-reigns-supreme.html
Stay protectedβimplement proactive defense strategies now: https://thehackernews.com/2024/09/why-microsoft-365-protection-reigns-supreme.html
π9β‘5π₯5π4
Cybercriminals are using new #ransomware disguised as LockBit to pressure victims, while embedding AWS credentials for data exfiltrationβhighlighting the evolving tactics of threat actors.
Learn more: https://thehackernews.com/2024/10/ransomware-gangs-use-lockbits-fame-to.html
Learn more: https://thehackernews.com/2024/10/ransomware-gangs-use-lockbits-fame-to.html
π11π€5π4β‘2π₯2
A new advanced Qilin #ransomware variant, Qilin.B, features enhanced AES-256-CTR and RSA-4096 encryption, making recovery nearly impossible without the attackers' keys.
Read β https://thehackernews.com/2024/10/new-qilinb-ransomware-variant-emerges.html
Read β https://thehackernews.com/2024/10/new-qilinb-ransomware-variant-emerges.html
π8π₯8β‘3π3
π₯ North Korean threat actor Jumpy Pisces has allied with the Play #ransomware group, highlighting a troubling milestone in cybercrime. Their tactics, including credential harvesting and advanced persistence.
Learn more: https://thehackernews.com/2024/10/north-korean-group-collaborates-with.html
Learn more: https://thehackernews.com/2024/10/north-korean-group-collaborates-with.html
π11π7β‘3π2