Ransomware

The Ultimate Guide to Dark Web Monitoring in 2026: Protect Your Data Before Attackers Strike

The Ultimate Guide to Dark Web Monitoring in 2026: Protect Your Data Before Attackers Strike 2026-03-13 at 16:29 By Ashish Khaitan In 2026, cyber threats are originating on the dark web, where stolen credentials, exploit kits, and attack plans are bought and sold before they ever reach corporate networks. Organizations are turning to dark web […]

The Ultimate Guide to Dark Web Monitoring in 2026: Protect Your Data Before Attackers Strike Read More »

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks 2026-03-09 at 15:37 By Ashish Khaitan Cybersecurity agencies across the Pacific region are sharing concerns about the ransomware group INC Ransom’s expanding activities and the growing influence of its affiliate network. A joint advisory issued by the Australian Cyber Security Centre (ACSC), National

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks Read More »

Russian Ransomware Operator Pleads Guilty in US

Russian Ransomware Operator Pleads Guilty in US 2026-03-05 at 15:02 By Eduard Kovacs Evgenii Ptitsyn was extradited to the United States from South Korea in November 2024. The post Russian Ransomware Operator Pleads Guilty in US appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Russian Ransomware Operator Pleads Guilty in US Read More »

ENISA’s Updated Cybersecurity Methodology Aligns with NIS2 and EU Cybersecurity Act

ENISA’s Updated Cybersecurity Methodology Aligns with NIS2 and EU Cybersecurity Act 2026-02-26 at 13:17 By Ashish Khaitan The European Union Agency for Cybersecurity (ENISA) released its updated cybersecurity exercise methodology, providing organizations and governments across Europe with a structured framework for planning, executing, and evaluating cybersecurity exercises. Designed to be both practical and theoretically robust, this methodology offers an end-to-end approach to enhancing

ENISA’s Updated Cybersecurity Methodology Aligns with NIS2 and EU Cybersecurity Act Read More »

Medical Device Maker UFP Technologies Hit by Cyberattack

Medical Device Maker UFP Technologies Hit by Cyberattack 2026-02-25 at 18:25 By Eduard Kovacs UFP Technologies appears to have been targeted in a ransomware attack that involved data theft and file-encrypting malware. The post Medical Device Maker UFP Technologies Hit by Cyberattack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Medical Device Maker UFP Technologies Hit by Cyberattack Read More »

CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108)

CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108) 2026-02-25 at 12:14 By Zeljka Zorz CISA has added CVE-2026-25108, an OS command injection vulnerability in Soliton Systems’ FileZen secure file transfer solution, to its Known Exploited Vulnerabilities (KEV) catalog. The vendor has confirmed active exploitation, stating it has received multiple reports of damage caused

CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108) Read More »

US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach

US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach 2026-02-23 at 17:35 By Eduard Kovacs The Everest ransomware group has taken credit for a hacker attack on Vikor Scientific, now called Vanta Diagnostics. The post US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach appeared first on SecurityWeek. This article is an excerpt

US Healthcare Diagnostic Firm Says 140,000 Affected by Data Breach Read More »

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product 2026-02-09 at 17:42 By Ionut Arghire SmarterTools says customers were impacted after hackers compromised a data center used for quality control testing. The post SmarterTools Hit by Ransomware via Vulnerability in Its Own Product appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product Read More »

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment 2026-02-09 at 17:18 By Zeljka Zorz SmarterTools, the company behind the popular Microsoft Exchange alternative SmarterMail, has been breached by a ransomware-wielding group that leveraged a recently fixed vulnerability in that solution. How did the SmarterTools breach happen? Derek Curtis, the firm’s Chief Operating Officer,

Ransomware group breached SmarterTools via flaw in its SmarterMail deployment Read More »

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter 2026-02-09 at 16:38 By Ionut Arghire As only data exfiltration for extortion no longer delivers ROI, ransomware gangs may increasingly encrypting data for additional leverage. The post Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter appeared first on SecurityWeek.

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter Read More »

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423)

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) 2026-02-06 at 13:12 By Zeljka Zorz For the third time in two weeks, CISA added a vulnerability (CVE-2026-24423) affecting SmarterTools’ SmarterMail email and collaboration server to its Known Exploited Vulnerabilities catalog, and this one is being exploited in ransomware attacks. A glut of SmarterMail vulnerabilities On January

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) Read More »

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog 2026-02-06 at 08:00 By Eduard Kovacs CISA updated 59 KEV entries in 2025 to specify that the vulnerabilities have been exploited in ransomware attacks. The post Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog appeared first on SecurityWeek. This article is an excerpt

Concerns Raised Over CISA’s Silent Ransomware Updates in KEV Catalog Read More »

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers 2026-02-05 at 18:17 By Zeljka Zorz CVE-2025-22225, a VMware ESXi arbitrary write vulnerability, is being used in ransomware campaigns, CISA confirmed on Wednesday by updating the vulnerability’s entry in its Known Exploited Vulnerabilities (KEV) catalog. Researchers linked VMware ESXi zero-day trio to single exploit toolkit

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers Read More »

Ransomware Attacks Have Surged 30% Since Q4 2025

Ransomware Attacks Have Surged 30% Since Q4 2025 2026-02-04 at 14:51 By Ashish Khaitan Ransomware groups claimed more than 2,000 attacks in the last three months of 2025 – and they’re starting 2026 at the same elevated pace.  Cyble recorded 2,018 claimed attacks by ransomware groups in the fourth quarter of 2025, an average of just under 673 a month. The threat groups maintained that pace in January 2026, claiming 679 ransomware victims.  By comparison, in

Ransomware Attacks Have Surged 30% Since Q4 2025 Read More »

Over 1,400 MongoDB Databases Ransacked by Threat Actor

Over 1,400 MongoDB Databases Ransacked by Threat Actor 2026-02-02 at 13:58 By Ionut Arghire Of 3,100 unprotected MongoDB instances, half remain compromised, most of them by a single threat actor. The post Over 1,400 MongoDB Databases Ransacked by Threat Actor appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Over 1,400 MongoDB Databases Ransacked by Threat Actor Read More »

Nike Probing Potential Security Incident as Hackers Threaten to Leak Data

Nike Probing Potential Security Incident as Hackers Threaten to Leak Data 2026-01-24 at 10:50 By Eduard Kovacs The WorldLeaks cybercrime group claims to have stolen information from the footwear and apparel giant’s systems. The post Nike Probing Potential Security Incident as Hackers Threaten to Leak Data appeared first on SecurityWeek. This article is an excerpt

Nike Probing Potential Security Incident as Hackers Threaten to Leak Data Read More »

Critical Infrastructure Attacks Became Routine for Hacktivists in 2025

Critical Infrastructure Attacks Became Routine for Hacktivists in 2025 2026-01-20 at 14:24 By Ashish Khaitan Hacktivists moved well beyond their traditional DDoS attacks and website defacements in 2025, increasingly targeting industrial control systems (ICS), ransomware, breaches, and data leaks, as their sophistication and alignment with nation-state interests grew.  That was one of the conclusions in Cyble’s exhaustive new 2025 Threat Landscape report, from which this blog was adapted. 

Critical Infrastructure Attacks Became Routine for Hacktivists in 2025 Read More »

Law enforcement tracks ransomware group blamed for massive financial losses

Law enforcement tracks ransomware group blamed for massive financial losses 2026-01-19 at 14:00 By Sinisa Markovic Law enforcement agencies in Ukraine and Germany have identified two members of a Russian-affiliated ransomware group and carried out searches in western Ukraine. Search (Source: Cyber ​​Police of Ukraine) Investigators also named the alleged organizer, a Russian national, and

Law enforcement tracks ransomware group blamed for massive financial losses Read More »

42,000 Impacted by Ingram Micro Ransomware Attack

42,000 Impacted by Ingram Micro Ransomware Attack 2026-01-19 at 13:14 By Ionut Arghire The compromised personal information includes names, dates of birth, Social Security numbers, and employment-related data. The post 42,000 Impacted by Ingram Micro Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

42,000 Impacted by Ingram Micro Ransomware Attack Read More »

Ransomware and Supply Chain Attacks Soared in 2025

Ransomware and Supply Chain Attacks Soared in 2025 2026-01-16 at 10:25 By Ashish Khaitan Overview  Ransomware and supply chain attacks soared in 2025, and persistently elevated attack levels suggest that the global threat landscape will remain perilous heading into 2026.  Cyble recorded 6,604 ransomware attacks in 2025, up 52% from the 4,346 attacks claimed by ransomware groups in 2024. The year ended with a near-record 731 ransomware attacks in December, second only to February 2025’s record totals (chart below).  Supply

Ransomware and Supply Chain Attacks Soared in 2025 Read More »

Scroll to Top