Ransomware

Volvo Group Employee Data Stolen in Ransomware Attack

Volvo Group Employee Data Stolen in Ransomware Attack 2025-09-25 at 13:22 By Ionut Arghire The Miljödata data breach has impacted numerous organizations, education institutions, and Swedish municipalities. The post Volvo Group Employee Data Stolen in Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Volvo Group Employee Data Stolen in Ransomware Attack Read More »

European Airport Cyberattack Linked to Obscure Ransomware, Suspect Arrested

European Airport Cyberattack Linked to Obscure Ransomware, Suspect Arrested 2025-09-24 at 15:17 By Eduard Kovacs Cybersecurity researchers believe the attack on Collins Aerospace involved a piece of ransomware known as HardBit. The post European Airport Cyberattack Linked to Obscure Ransomware, Suspect Arrested appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

European Airport Cyberattack Linked to Obscure Ransomware, Suspect Arrested Read More »

SonicWall adds rootkit removal capabilities to the SMA 100 series

SonicWall adds rootkit removal capabilities to the SMA 100 series 2025-09-23 at 16:24 By Zeljka Zorz SonicWall has released new firmware for its Secure Mobile Access (SMA) 100 series appliances, adding file-checking capabilities that help users remove known rootkit malware. The malware in question is the OVERSTEP user-mode rootkit, deployed by threat group UNC6148. The

SonicWall adds rootkit removal capabilities to the SMA 100 series Read More »

European Airport Disruptions Caused by Ransomware Attack

European Airport Disruptions Caused by Ransomware Attack 2025-09-22 at 15:34 By Eduard Kovacs Collins Aerospace is reportedly having difficulties recovering from the ransomware attack. The post European Airport Disruptions Caused by Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

European Airport Disruptions Caused by Ransomware Attack Read More »

Nearly 250,000 Impacted by Data Breach at Medical Associates of Brevard 

Nearly 250,000 Impacted by Data Breach at Medical Associates of Brevard  2025-09-18 at 13:10 By Eduard Kovacs The BianLian ransomware group took credit for the cyberattack on the healthcare organization in January 2025.  The post Nearly 250,000 Impacted by Data Breach at Medical Associates of Brevard  appeared first on SecurityWeek. This article is an excerpt

Nearly 250,000 Impacted by Data Breach at Medical Associates of Brevard  Read More »

Insight Partners Confirms Data Breach Result of Ransomware Attack

Insight Partners Confirms Data Breach Result of Ransomware Attack 2025-09-18 at 11:10 By Eduard Kovacs Venture capital firm Insight Partners says the data breach disclosed in February 2025 impacts over 12,000 people. The post Insight Partners Confirms Data Breach Result of Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Insight Partners Confirms Data Breach Result of Ransomware Attack Read More »

Ransomware attackers used incorrectly stored recovery codes to disable EDR agents

Ransomware attackers used incorrectly stored recovery codes to disable EDR agents 2025-09-16 at 15:46 By Zeljka Zorz All target organizations are different, but ransomware attackers are highly adaptive and appreciate – and will exploit – any mistake you make. The latest Akira ransomware attacks Managed security service providers and external incident responders have had a

Ransomware attackers used incorrectly stored recovery codes to disable EDR agents Read More »

West Virginia Credit Union Notifying 187,000 People Impacted by 2023 Data Breach

West Virginia Credit Union Notifying 187,000 People Impacted by 2023 Data Breach 2025-09-15 at 12:46 By Ionut Arghire Two years after the fact, Fairmont Federal Credit Union tells customers their personal, financial, and medical information was compromised. The post West Virginia Credit Union Notifying 187,000 People Impacted by 2023 Data Breach appeared first on SecurityWeek.

West Virginia Credit Union Notifying 187,000 People Impacted by 2023 Data Breach Read More »

HybridPetya: (Proof-of-concept?) ransomware can bypass UEFI Secure Boot

HybridPetya: (Proof-of-concept?) ransomware can bypass UEFI Secure Boot 2025-09-12 at 19:00 By Help Net Security ESET researchers have discovered HybridPetya, a bootkit-and-ransomware combo that’s a copycat of the infamous Petya/NotPetya malware, augmented with the capability of compromising UEFI-based systems and weaponizing CVE-2024-7344 to bypass UEFI Secure Boot on outdated systems. The sample was uploaded from

HybridPetya: (Proof-of-concept?) ransomware can bypass UEFI Secure Boot Read More »

Akira ransomware affiliates continue breaching organizations via SonicWall firewalls

Akira ransomware affiliates continue breaching organizations via SonicWall firewalls 2025-09-11 at 18:25 By Zeljka Zorz Over a year after SonicWall patched CVE-2024-40766, a critical flaw in its next-gen firewalls, ransomware attackers are still gaining a foothold in organizations by exploiting it. Like last September and earlier this year, the attackers are affiliates of the Akira

Akira ransomware affiliates continue breaching organizations via SonicWall firewalls Read More »

Akira Ransomware Attacks Fuel Uptick in Exploitation of SonicWall Flaw

Akira Ransomware Attacks Fuel Uptick in Exploitation of SonicWall Flaw 2025-09-11 at 15:54 By Ionut Arghire The Akira ransomware group is likely exploiting a combination of three attack vectors to gain unauthorized access to vulnerable appliances. The post Akira Ransomware Attacks Fuel Uptick in Exploitation of SonicWall Flaw appeared first on SecurityWeek. This article is

Akira Ransomware Attacks Fuel Uptick in Exploitation of SonicWall Flaw Read More »

100,000 Impacted by Cornwell Quality Tools Data Breach 

100,000 Impacted by Cornwell Quality Tools Data Breach  2025-09-11 at 15:24 By Eduard Kovacs The tools manufacturer was targeted in a ransomware attack claimed by the Cactus group. The post 100,000 Impacted by Cornwell Quality Tools Data Breach  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

100,000 Impacted by Cornwell Quality Tools Data Breach  Read More »

US Offers $10 Million Reward for Ukrainian Ransomware Operator

US Offers $10 Million Reward for Ukrainian Ransomware Operator 2025-09-10 at 13:28 By Ionut Arghire Volodymyr Tymoshchuk allegedly hit hundreds of organizations with the LockerGoga, MegaCortex, and Nefilim ransomware families. The post US Offers $10 Million Reward for Ukrainian Ransomware Operator appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

US Offers $10 Million Reward for Ukrainian Ransomware Operator Read More »

Ransomware Losses Climb as AI Pushes Phishing to New Heights

Ransomware Losses Climb as AI Pushes Phishing to New Heights 2025-09-09 at 16:39 By Kevin Townsend Based on real-world insurance claims, Resilience’s midyear report shows vendor risk is declining but costly, ransomware is evolving with triple extortion, and social engineering attacks are accelerating through AI. The post Ransomware Losses Climb as AI Pushes Phishing to

Ransomware Losses Climb as AI Pushes Phishing to New Heights Read More »

160,000 Impacted by Wayne Memorial Hospital Data Breach

160,000 Impacted by Wayne Memorial Hospital Data Breach 2025-09-09 at 15:00 By Ionut Arghire In May 2024, hackers stole names, Social Security numbers, financial information, and protected health information from the hospital’s systems. The post 160,000 Impacted by Wayne Memorial Hospital Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

160,000 Impacted by Wayne Memorial Hospital Data Breach Read More »

Threat Actor Connected to Play, RansomHub and DragonForce Ransomware Operations

Threat Actor Connected to Play, RansomHub and DragonForce Ransomware Operations 2025-09-09 at 14:00 By Ionut Arghire The attacker deployed multiple malware families, including two backdoors and a proxy tunneller, and various reconnaissance tools. The post Threat Actor Connected to Play, RansomHub and DragonForce Ransomware Operations appeared first on SecurityWeek. This article is an excerpt from

Threat Actor Connected to Play, RansomHub and DragonForce Ransomware Operations Read More »

PromptLock Only PoC, but AI-Powered Ransomware Is Real

PromptLock Only PoC, but AI-Powered Ransomware Is Real 2025-09-08 at 17:37 By Ionut Arghire PromptLock is only a prototype of LLM-orchestrated ransomware, but hackers already use AI in file encryption and extortion attacks. The post PromptLock Only PoC, but AI-Powered Ransomware Is Real appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

PromptLock Only PoC, but AI-Powered Ransomware Is Real Read More »

Pennsylvania Attorney General Confirms Ransomware Behind Weeks-Long Outage

Pennsylvania Attorney General Confirms Ransomware Behind Weeks-Long Outage 2025-09-03 at 14:30 By Ionut Arghire Attack disrupted email, phones, and websites for weeks, but officials say no ransom was paid. The post Pennsylvania Attorney General Confirms Ransomware Behind Weeks-Long Outage appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Pennsylvania Attorney General Confirms Ransomware Behind Weeks-Long Outage Read More »

Ransomware Group Exploits Hybrid Cloud Gaps, Gains Full Azure Control in Enterprise Attacks

Ransomware Group Exploits Hybrid Cloud Gaps, Gains Full Azure Control in Enterprise Attacks 2025-08-29 at 16:25 By Ionut Arghire Storm-0501 has been leveraging cloud-native capabilities for data exfiltration and deletion, without deploying file-encrypting malware. The post Ransomware Group Exploits Hybrid Cloud Gaps, Gains Full Azure Control in Enterprise Attacks appeared first on SecurityWeek. This article

Ransomware Group Exploits Hybrid Cloud Gaps, Gains Full Azure Control in Enterprise Attacks Read More »

Scroll to Top