§Topic · Ransomware
Ransomware
Ransomware gangs, double-extortion campaigns, decryptors, and the incidents shaping today's ransomware landscape.
All dispatches
Loading
§Topic · Ransomware
Ransomware gangs, double-extortion campaigns, decryptors, and the incidents shaping today's ransomware landscape.
All dispatchesDevMan RaaS (Funky Mantis) operates a portal centralizing payload builds, victim tracking, and affiliate payouts for ransomware affiliates.
JadePuffer resurfaces deploying ransomware designed to encrypt or wipe AI models, datasets and vector DBs.
Qilin ransomware exploits critical Palo Alto PAN-OS GlobalProtect authentication bypass to breach networks and deploy ransomware.
JadePuffer/ENCFORGE targets AI model files, encrypting weights, vector indexes and datasets after Langflow RCE.
Stadler Rail rejects Everest ransomware group's $12.3M extortion demand after data theft from supplier's file-sharing platform.
Ransomware disrupted operations at a Japanese frozen-food logistics firm, delaying shipments to major clients including national franchises.
Chaos/msaRAT abuses headless Chrome and Edge for covert C2 channels, complicating detection and network-based controls.
Spirals ransomware used IIS web shell and PsExec to achieve full network encryption at an IT firm within 24 hours.
Ransomware forced Coca‑Cola's Fairlife to suspend U.S. production, impacting supply chains and operations.
CISA warns of actively exploited SharePoint vulnerabilities and flags a stealthy ransomware family and law-enforcement takedowns.
Spirals ransomware completes intrusion-to-encryption in under 24 hours, stressing the need for rapid detection and response.
Wargame simulates water-sector attack; analysts warn that agentic AI speeds ransomware attack development and automation.
GigaWiper backdoor includes wiper, ransomware encryption and multi-pass wiping commands for destructive sabotage and espionage.
State-owned Latvijas Valsts Mezi (LVM) remains recovering weeks after a financially-motivated cyberattack corrupted systems.
GigaWiper backdoor combines disk-wiping, overwriting, and fake ransomware behaviors to deliver destructive Windows intrusions.
Researchers detail GodDamn ransomware's use of a signed PoisonX kernel driver to disable security tools and evade detection.
Get these articles delivered to your inbox.
Subscribe free