Ransomware

Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware 

Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware  2026-03-23 at 17:17 By Ionut Arghire The semiconductor company says hackers deployed file-encrypting ransomware on the network of a subsidiary in Singapore. The post Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware  Read More »

North Korea’s Crypto Theft Operations: The Role of Lazarus Group in State-Sponsored Financial Warfare

North Korea’s Crypto Theft Operations: The Role of Lazarus Group in State-Sponsored Financial Warfare 2026-03-21 at 17:05 By Ashish Khaitan The latest Bitrefill cyberattack offers a revealing look into how state-sponsored cybercrime has evolved into a strategic financial weapon. The latest development revolves around the threat actor Lazarus Group, a hacking collective widely attributed to the DPRK (North Korea), whose operations

North Korea’s Crypto Theft Operations: The Role of Lazarus Group in State-Sponsored Financial Warfare Read More »

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131)

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) 2026-03-20 at 15:21 By Zeljka Zorz A critical vulnerability (CVE-2026-20131) in Cisco Secure Firewall Management Center (FMC) that Cisco disclosed and patched in early March 2026 has been exploited as a zero-day by the Interlock ransomware gang, Amazon CISO and VP of Security Engineering

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) Read More »

Inside Russia’s Shift to Credential-Based Intrusions: What CISOs Need to Know in 2026

Inside Russia’s Shift to Credential-Based Intrusions: What CISOs Need to Know in 2026 2026-03-19 at 13:32 By Ashish Khaitan Russia-linked hacktivist activity has entered a noticeably different phase. While earlier campaigns leaned heavily on disruption through denial-of-service and opportunistic scanning of exposed systems, the current trajectory shows a stronger dependence on credential-based intrusions and identity-based cyber attacks. For security leaders,

Inside Russia’s Shift to Credential-Based Intrusions: What CISOs Need to Know in 2026 Read More »

EDR killers are now standard equipment in ransomware attacks

EDR killers are now standard equipment in ransomware attacks 2026-03-19 at 12:02 By Anamarija Pogorelec Ransomware attackers routinely deploy tools designed to disable endpoint detection and response software before launching encryptors. These tools, known as EDR killers, have become a standard component of ransomware intrusions. ESET Research tracked nearly 90 EDR killers actively used in

EDR killers are now standard equipment in ransomware attacks Read More »

Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks

Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks 2026-03-19 at 11:01 By Eduard Kovacs Amazon found evidence that the FMC software vulnerability has been exploited since late January, and found links to Russia. The post Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks appeared first on SecurityWeek. This article is an

Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks Read More »

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact 2026-03-16 at 18:08 By Eduard Kovacs Broadcom, Bechtel, Estée Lauder, and Abbott Technologies are the only major companies that have yet to issue a public statement.  The post Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact appeared first on

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact Read More »

The Ultimate Guide to Dark Web Monitoring in 2026: Protect Your Data Before Attackers Strike

The Ultimate Guide to Dark Web Monitoring in 2026: Protect Your Data Before Attackers Strike 2026-03-13 at 16:29 By Ashish Khaitan In 2026, cyber threats are originating on the dark web, where stolen credentials, exploit kits, and attack plans are bought and sold before they ever reach corporate networks. Organizations are turning to dark web

The Ultimate Guide to Dark Web Monitoring in 2026: Protect Your Data Before Attackers Strike Read More »

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks 2026-03-09 at 15:37 By Ashish Khaitan Cybersecurity agencies across the Pacific region are sharing concerns about the ransomware group INC Ransom’s expanding activities and the growing influence of its affiliate network. A joint advisory issued by the Australian Cyber Security Centre (ACSC), National

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks Read More »

Russian Ransomware Operator Pleads Guilty in US

Russian Ransomware Operator Pleads Guilty in US 2026-03-05 at 15:02 By Eduard Kovacs Evgenii Ptitsyn was extradited to the United States from South Korea in November 2024. The post Russian Ransomware Operator Pleads Guilty in US appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Russian Ransomware Operator Pleads Guilty in US Read More »

ENISA’s Updated Cybersecurity Methodology Aligns with NIS2 and EU Cybersecurity Act

ENISA’s Updated Cybersecurity Methodology Aligns with NIS2 and EU Cybersecurity Act 2026-02-26 at 13:17 By Ashish Khaitan The European Union Agency for Cybersecurity (ENISA) released its updated cybersecurity exercise methodology, providing organizations and governments across Europe with a structured framework for planning, executing, and evaluating cybersecurity exercises. Designed to be both practical and theoretically robust, this methodology offers an end-to-end approach to enhancing

ENISA’s Updated Cybersecurity Methodology Aligns with NIS2 and EU Cybersecurity Act Read More »

Medical Device Maker UFP Technologies Hit by Cyberattack

Medical Device Maker UFP Technologies Hit by Cyberattack 2026-02-25 at 18:25 By Eduard Kovacs UFP Technologies appears to have been targeted in a ransomware attack that involved data theft and file-encrypting malware. The post Medical Device Maker UFP Technologies Hit by Cyberattack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Medical Device Maker UFP Technologies Hit by Cyberattack Read More »

CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108)

CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108) 2026-02-25 at 12:14 By Zeljka Zorz CISA has added CVE-2026-25108, an OS command injection vulnerability in Soliton Systems’ FileZen secure file transfer solution, to its Known Exploited Vulnerabilities (KEV) catalog. The vendor has confirmed active exploitation, stating it has received multiple reports of damage caused

CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108) Read More »

US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach

US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach 2026-02-23 at 17:35 By Eduard Kovacs The Everest ransomware group has taken credit for a hacker attack on Vikor Scientific, now called Vanta Diagnostics. The post US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach appeared first on SecurityWeek. This article is an excerpt

US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach Read More »

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product 2026-02-09 at 17:42 By Ionut Arghire SmarterTools says customers were impacted after hackers compromised a data center used for quality control testing. The post SmarterTools Hit by Ransomware via Vulnerability in Its Own Product appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product Read More »

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment 2026-02-09 at 17:18 By Zeljka Zorz SmarterTools, the company behind the popular Microsoft Exchange alternative SmarterMail, has been breached by a ransomware-wielding group that leveraged a recently fixed vulnerability in that solution. How did the SmarterTools breach happen? Derek Curtis, the firm’s Chief Operating Officer,

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment Read More »

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter 2026-02-09 at 16:38 By Ionut Arghire As only data exfiltration for extortion no longer delivers ROI, ransomware gangs may increasingly encrypting data for additional leverage. The post Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter appeared first on SecurityWeek.

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter Read More »

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423)

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) 2026-02-06 at 13:12 By Zeljka Zorz For the third time in two weeks, CISA added a vulnerability (CVE-2026-24423) affecting SmarterTools’ SmarterMail email and collaboration server to its Known Exploited Vulnerabilities catalog, and this one is being exploited in ransomware attacks. A glut of SmarterMail vulnerabilities On January

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) Read More »

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog 2026-02-06 at 08:00 By Eduard Kovacs CISA updated 59 KEV entries in 2025 to specify that the vulnerabilities have been exploited in ransomware attacks. The post Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog appeared first on SecurityWeek. This article is an excerpt

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog Read More »

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers 2026-02-05 at 18:17 By Zeljka Zorz CVE-2025-22225, a VMware ESXi arbitrary write vulnerability, is being used in ransomware campaigns, CISA confirmed on Wednesday by updating the vulnerability’s entry in its Known Exploited Vulnerabilities (KEV) catalog. Researchers linked VMware ESXi zero-day trio to single exploit toolkit

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers Read More »

Scroll to Top