Ransomware

Black Hat Asia 2026 Is Coming to Singapore — Here’s What the Threat Landscape Looks Like Ahead of It

Black Hat Asia 2026 Is Coming to Singapore — Here’s What the Threat Landscape Looks Like Ahead of It 2026-04-13 at 16:17 By Ashish Khaitan As the cybersecurity community prepares for Black Hat Asia 2026 Singapore, the conversation is shifting from isolated incidents to systemic risk. The Black Hat Asia 2026 conference arrives at a […]

Black Hat Asia 2026 Is Coming to Singapore — Here’s What the Threat Landscape Looks Like Ahead of It Read More »

Cybercrime losses break the $20 billion mark

Cybercrime losses break the $20 billion mark 2026-04-07 at 22:03 By Sinisa Markovic Online crime continues to generate rising financial losses, with totals reaching $20.877 billion in 2025. The FBI’s Internet Crime Complaint Center (IC3) report shows a 26% increase in total reported losses from the previous year. (Source: FBI) More than one million complaints

Cybercrime losses break the $20 billion mark Read More »

Medusa Ransomware Fast to Exploit Vulnerabilities, Breached Systems

Medusa Ransomware Fast to Exploit Vulnerabilities, Breached Systems 2026-04-07 at 14:58 By Ionut Arghire The group is using zero-days, quickly weaponizes fresh bugs, and exfiltrates and encrypts data within days of initial access. The post Medusa Ransomware Fast to Exploit Vulnerabilities, Breached Systems appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Medusa Ransomware Fast to Exploit Vulnerabilities, Breached Systems Read More »

German Police Unmask REvil Ransomware Leader

German Police Unmask REvil Ransomware Leader 2026-04-07 at 12:55 By Ionut Arghire Shchukin is accused of extorting more than $2 million as the head of the GandCrab and REvil ransomware operations. The post German Police Unmask REvil Ransomware Leader appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

German Police Unmask REvil Ransomware Leader Read More »

Google Drive now detects ransomware and helps restore affected files

Google Drive now detects ransomware and helps restore affected files 2026-03-31 at 12:46 By Anamarija Pogorelec To help organizations minimize the impact of malware attacks on personal computers, Google launched ransomware detection and file restoration in beta in September 2025. These features are now generally available. End user alert in Drive for desktop when ransomware

Google Drive now detects ransomware and helps restore affected files Read More »

China’s APT41 and the Expanding Enterprise Attack Surface: What Security Teams Must Prepare For

China’s APT41 and the Expanding Enterprise Attack Surface: What Security Teams Must Prepare For 2026-03-27 at 16:01 By Ashish Khaitan The modern enterprise attack surface is no longer confined to corporate networks and endpoints; it now stretches across cloud workloads, supply chains, remote devices, and even operational technology environments. Within this fragmented landscape, the activities

China’s APT41 and the Expanding Enterprise Attack Surface: What Security Teams Must Prepare For Read More »

The Energy Sector’s Ransomware Nightmare: Why Critical Infrastructure Can’t Catch a Break

The Energy Sector’s Ransomware Nightmare: Why Critical Infrastructure Can’t Catch a Break 2026-03-26 at 12:32 By Ashish Khaitan Let’s talk about the sector that keeps our lights on, water running, and industries humming—and why it’s become ransomware’s favorite target.  In 2025, the global energy and utilities sector faced 187 confirmed ransomware attacks. Not attempts. Confirmed, successful intrusions where attackers locked systems, stole

The Energy Sector’s Ransomware Nightmare: Why Critical Infrastructure Can’t Catch a Break Read More »

Russian Cybercriminal Gets 2-Year Prison Sentence in US 

Russian Cybercriminal Gets 2-Year Prison Sentence in US  2026-03-25 at 18:18 By Eduard Kovacs Ilya Angelov was a member of the cybercrime group tracked as TA-551, Shathak, Gold Cabin, Monster Libra, and ATK236. The post Russian Cybercriminal Gets 2-Year Prison Sentence in US  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Russian Cybercriminal Gets 2-Year Prison Sentence in US  Read More »

Botnet operator behind $14 million in ransomware extortion payments gets 24 months behind bars

Botnet operator behind $14 million in ransomware extortion payments gets 24 months behind bars 2026-03-25 at 17:13 By Sinisa Markovic A Russian national has been sentenced to 24 months in prison after admitting he managed a botnet used to launch ransomware attacks against dozens of U.S. companies. The judge also imposed a $100,000 fine and

Botnet operator behind $14 million in ransomware extortion payments gets 24 months behind bars Read More »

US Prisons Russian Access Broker for Aiding Ransomware Attacks

US Prisons Russian Access Broker for Aiding Ransomware Attacks 2026-03-25 at 12:46 By Eduard Kovacs Aleksei Volkov has been sentenced to 81 months in prison for his role in Yanluowang ransomware attacks.  The post US Prisons Russian Access Broker for Aiding Ransomware Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

US Prisons Russian Access Broker for Aiding Ransomware Attacks Read More »

Russian initial access broker helped ransomware gangs extort millions, sentenced to 81 months

Russian initial access broker helped ransomware gangs extort millions, sentenced to 81 months 2026-03-24 at 19:53 By Sinisa Markovic A Russian citizen, Aleksei Volkov, was sentenced to 81 months in prison for helping ransomware groups carry out attacks causing over $9 million in actual losses and over $24 million in intended losses, after being arrested

Russian initial access broker helped ransomware gangs extort millions, sentenced to 81 months Read More »

Vulnerabilities from years ago still opening doors for attackers

Vulnerabilities from years ago still opening doors for attackers 2026-03-24 at 14:02 By Sinisa Markovic Exploitation timelines continued to compress in enterprise environments, with newly disclosed flaws reaching active use almost immediately and older weaknesses remaining active years after disclosure. (Source: Cisco Talos) Findings from Cisco Talos’ 2025 Year in Review show how attackers combined

Vulnerabilities from years ago still opening doors for attackers Read More »

India’s Evolving Cyber Threat Landscape: State-Sponsored Attacks, Hacktivism, and What’s Next in 2026

India’s Evolving Cyber Threat Landscape: State-Sponsored Attacks, Hacktivism, and What’s Next in 2026 2026-03-24 at 12:32 By Ashish Khaitan The India cyber threat landscape 2026 is no longer defined by isolated incidents or opportunistic attacks. It has become a dynamic, constantly shifting battleground shaped by geopolitical tensions, rapid digitization, and highly advanced hackers. What once looked like sporadic cybercrime

India’s Evolving Cyber Threat Landscape: State-Sponsored Attacks, Hacktivism, and What’s Next in 2026 Read More »

Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware 

Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware  2026-03-23 at 17:17 By Ionut Arghire The semiconductor company says hackers deployed file-encrypting ransomware on the network of a subsidiary in Singapore. The post Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware  Read More »

North Korea’s Crypto Theft Operations: The Role of Lazarus Group in State-Sponsored Financial Warfare

North Korea’s Crypto Theft Operations: The Role of Lazarus Group in State-Sponsored Financial Warfare 2026-03-21 at 17:05 By Ashish Khaitan The latest Bitrefill cyberattack offers a revealing look into how state-sponsored cybercrime has evolved into a strategic financial weapon. The latest development revolves around the threat actor Lazarus Group, a hacking collective widely attributed to the DPRK (North Korea), whose operations

North Korea’s Crypto Theft Operations: The Role of Lazarus Group in State-Sponsored Financial Warfare Read More »

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131)

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) 2026-03-20 at 15:21 By Zeljka Zorz A critical vulnerability (CVE-2026-20131) in Cisco Secure Firewall Management Center (FMC) that Cisco disclosed and patched in early March 2026 has been exploited as a zero-day by the Interlock ransomware gang, Amazon CISO and VP of Security Engineering

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) Read More »

Inside Russia’s Shift to Credential-Based Intrusions: What CISOs Need to Know in 2026

Inside Russia’s Shift to Credential-Based Intrusions: What CISOs Need to Know in 2026 2026-03-19 at 13:32 By Ashish Khaitan Russia-linked hacktivist activity has entered a noticeably different phase. While earlier campaigns leaned heavily on disruption through denial-of-service and opportunistic scanning of exposed systems, the current trajectory shows a stronger dependence on credential-based intrusions and identity-based cyber attacks. For security leaders,

Inside Russia’s Shift to Credential-Based Intrusions: What CISOs Need to Know in 2026 Read More »

EDR killers are now standard equipment in ransomware attacks

EDR killers are now standard equipment in ransomware attacks 2026-03-19 at 12:02 By Anamarija Pogorelec Ransomware attackers routinely deploy tools designed to disable endpoint detection and response software before launching encryptors. These tools, known as EDR killers, have become a standard component of ransomware intrusions. ESET Research tracked nearly 90 EDR killers actively used in

EDR killers are now standard equipment in ransomware attacks Read More »

Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks

Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks 2026-03-19 at 11:01 By Eduard Kovacs Amazon found evidence that the FMC software vulnerability has been exploited since late January, and found links to Russia. The post Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks appeared first on SecurityWeek. This article is an

Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks Read More »

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact 2026-03-16 at 18:08 By Eduard Kovacs Broadcom, Bechtel, Estée Lauder, and Abbott Technologies are the only major companies that have yet to issue a public statement.  The post Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact appeared first on

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact Read More »

Scroll to Top