Ransomware

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product 2026-02-09 at 17:42 By Ionut Arghire SmarterTools says customers were impacted after hackers compromised a data center used for quality control testing. The post SmarterTools Hit by Ransomware via Vulnerability in Its Own Product appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product Read More »

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment 2026-02-09 at 17:18 By Zeljka Zorz SmarterTools, the company behind the popular Microsoft Exchange alternative SmarterMail, has been breached by a ransomware-wielding group that leveraged a recently fixed vulnerability in that solution. How did the SmarterTools breach happen? Derek Curtis, the firm’s Chief Operating Officer,

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment Read More »

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter 2026-02-09 at 16:38 By Ionut Arghire As only data exfiltration for extortion no longer delivers ROI, ransomware gangs may increasingly encrypting data for additional leverage. The post Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter appeared first on SecurityWeek.

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter Read More »

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423)

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) 2026-02-06 at 13:12 By Zeljka Zorz For the third time in two weeks, CISA added a vulnerability (CVE-2026-24423) affecting SmarterTools’ SmarterMail email and collaboration server to its Known Exploited Vulnerabilities catalog, and this one is being exploited in ransomware attacks. A glut of SmarterMail vulnerabilities On January

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) Read More »

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog 2026-02-06 at 08:00 By Eduard Kovacs CISA updated 59 KEV entries in 2025 to specify that the vulnerabilities have been exploited in ransomware attacks. The post Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog appeared first on SecurityWeek. This article is an excerpt

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog Read More »

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers 2026-02-05 at 18:17 By Zeljka Zorz CVE-2025-22225, a VMware ESXi arbitrary write vulnerability, is being used in ransomware campaigns, CISA confirmed on Wednesday by updating the vulnerability’s entry in its Known Exploited Vulnerabilities (KEV) catalog. Researchers linked VMware ESXi zero-day trio to single exploit toolkit

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers Read More »

Ransomware Attacks Have Surged 30% Since Q4 2025

Ransomware Attacks Have Surged 30% Since Q4 2025 2026-02-04 at 14:51 By Ashish Khaitan Ransomware groups claimed more than 2,000 attacks in the last three months of 2025 – and they’re starting 2026 at the same elevated pace.  Cyble recorded 2,018 claimed attacks by ransomware groups in the fourth quarter of 2025, an average of just under 673 a month. The threat groups maintained that pace in January 2026, claiming 679 ransomware victims.  By comparison, in

Ransomware Attacks Have Surged 30% Since Q4 2025 Read More »

Over 1,400 MongoDB Databases Ransacked by Threat Actor

Over 1,400 MongoDB Databases Ransacked by Threat Actor 2026-02-02 at 13:58 By Ionut Arghire Of 3,100 unprotected MongoDB instances, half remain compromised, most of them by a single threat actor. The post Over 1,400 MongoDB Databases Ransacked by Threat Actor appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Over 1,400 MongoDB Databases Ransacked by Threat Actor Read More »

Nike Probing Potential Security Incident as Hackers Threaten to Leak Data

Nike Probing Potential Security Incident as Hackers Threaten to Leak Data 2026-01-24 at 10:50 By Eduard Kovacs The WorldLeaks cybercrime group claims to have stolen information from the footwear and apparel giant’s systems. The post Nike Probing Potential Security Incident as Hackers Threaten to Leak Data appeared first on SecurityWeek. This article is an excerpt

Nike Probing Potential Security Incident as Hackers Threaten to Leak Data Read More »

Critical Infrastructure Attacks Became Routine for Hacktivists in 2025

Critical Infrastructure Attacks Became Routine for Hacktivists in 2025 2026-01-20 at 14:24 By Ashish Khaitan Hacktivists moved well beyond their traditional DDoS attacks and website defacements in 2025, increasingly targeting industrial control systems (ICS), ransomware, breaches, and data leaks, as their sophistication and alignment with nation-state interests grew.  That was one of the conclusions in Cyble’s exhaustive new 2025 Threat Landscape report, from which this blog was adapted. 

Critical Infrastructure Attacks Became Routine for Hacktivists in 2025 Read More »

Law enforcement tracks ransomware group blamed for massive financial losses

Law enforcement tracks ransomware group blamed for massive financial losses 2026-01-19 at 14:00 By Sinisa Markovic Law enforcement agencies in Ukraine and Germany have identified two members of a Russian-affiliated ransomware group and carried out searches in western Ukraine. Search (Source: Cyber ​​Police of Ukraine) Investigators also named the alleged organizer, a Russian national, and

Law enforcement tracks ransomware group blamed for massive financial losses Read More »

42,000 Impacted by Ingram Micro Ransomware Attack

42,000 Impacted by Ingram Micro Ransomware Attack 2026-01-19 at 13:14 By Ionut Arghire The compromised personal information includes names, dates of birth, Social Security numbers, and employment-related data. The post 42,000 Impacted by Ingram Micro Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

42,000 Impacted by Ingram Micro Ransomware Attack Read More »

Ransomware and Supply Chain Attacks Soared in 2025

Ransomware and Supply Chain Attacks Soared in 2025 2026-01-16 at 10:25 By Ashish Khaitan Overview  Ransomware and supply chain attacks soared in 2025, and persistently elevated attack levels suggest that the global threat landscape will remain perilous heading into 2026.  Cyble recorded 6,604 ransomware attacks in 2025, up 52% from the 4,346 attacks claimed by ransomware groups in 2024. The year ended with a near-record 731 ransomware attacks in December, second only to February 2025’s record totals (chart below).  Supply

Ransomware and Supply Chain Attacks Soared in 2025 Read More »

Ransomware activity never dies, it multiplies

Ransomware activity never dies, it multiplies 2026-01-16 at 09:57 By Sinisa Markovic Ransomware attacks kept climbing through 2025, even as major criminal groups collapsed and reformed. A new study conducted by the Symantec and Carbon Black Threat Hunter Team shows that disruption inside the ransomware economy slowed activity only briefly, while extortion methods expanded and

Ransomware activity never dies, it multiplies Read More »

Hackers Accessed University of Hawaii Cancer Center Patient Data; They Weren’t Immediately Notified

Hackers Accessed University of Hawaii Cancer Center Patient Data; They Weren’t Immediately Notified 2026-01-12 at 04:15 By Associated Press UH officials declined an interview request and have refused to provide key information, including which cancer research project had been affected or how much UH paid the hackers to regain access to files. The post Hackers

Hackers Accessed University of Hawaii Cancer Center Patient Data; They Weren’t Immediately Notified Read More »

377,000 Impacted by Data Breach at Texas Gas Station Firm

377,000 Impacted by Data Breach at Texas Gas Station Firm 2026-01-09 at 14:23 By Eduard Kovacs Gulshan Management Services has informed authorities about a recent data breach resulting from a ransomware attack. The post 377,000 Impacted by Data Breach at Texas Gas Station Firm appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

377,000 Impacted by Data Breach at Texas Gas Station Firm Read More »

Initial Access Sales Accelerated Across Australia and New Zealand in 2025

Initial Access Sales Accelerated Across Australia and New Zealand in 2025 2026-01-08 at 15:07 By Ashish Khaitan The cyber threat environment in Australia and New Zealand experienced a new escalation throughout 2025, driven by a surge in initial access sales, ransomware operations, and high-impact data breaches. According to our Threat Landscape Report Australia and New Zealand 2025, threat activity observed between January and November 2025 reveals a

Initial Access Sales Accelerated Across Australia and New Zealand in 2025 Read More »

Sedgwick Confirms Cyberattack on Government Subsidiary

Sedgwick Confirms Cyberattack on Government Subsidiary 2026-01-05 at 20:24 By Ionut Arghire Hackers have compromised a file transfer system at Sedgwick’s subsidiary that serves government agencies. The post Sedgwick Confirms Cyberattack on Government Subsidiary appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Sedgwick Confirms Cyberattack on Government Subsidiary Read More »

Covenant Health Data Breach Impacts 478,000 Individuals

Covenant Health Data Breach Impacts 478,000 Individuals 2026-01-02 at 14:42 By Eduard Kovacs The Qilin ransomware group hacked the healthcare organization and stole data from its systems in May 2025.  The post Covenant Health Data Breach Impacts 478,000 Individuals appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Covenant Health Data Breach Impacts 478,000 Individuals Read More »

Two US Cybersecurity Pros Plead Guilty Over Ransomware Attacks

Two US Cybersecurity Pros Plead Guilty Over Ransomware Attacks 2026-01-02 at 14:08 By Eduard Kovacs Ryan Goldberg and Kevin Martin have admitted being affiliates of the BlackCat/Alphv ransomware group. The post Two US Cybersecurity Pros Plead Guilty Over Ransomware Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Two US Cybersecurity Pros Plead Guilty Over Ransomware Attacks Read More »

Scroll to Top