Windows MSHTML 0-Day Exploited to Deploy Cobalt Strike Beacon in Targeted AttacksThe Hacker News·Nov 12, 15:17 UTC · Nov 12, 2021RansomwareCVE-2021-4044460
Sabbath Ransomware target critical infrastructure in the US and CanadaSecurity Affairs·Dec 1, 07:29 UTC · Dec 1, 2021Ransomware60
⚡ Weekly Recap: Password Manager Flaws, Apple 0-Day, Hidden AI Prompts, In-theThe Hacker News·Aug 27, 05:11 UTC · Aug 27, 2025Ransomware in the wildCVE-2018-0171CVE-2025-43300CVE-2025-7353+5 CVEs60
DroxiDat-Cobalt Strike Duo Targets Power Generator NetworkInfosecurity Magazine·Aug 11, 17:00 UTC · Aug 11, 2023Ransomware60
JADEPUFFER: First End-to-End AISecurity Affairs·Jul 3, 11:29 UTC · Jul 3, 2026Ransomware in the wildCVE-2025-3248CVE-2021-2944160
Analysis of Cuba ransomware gang activity and toolingKaspersky Securelist·Sep 11, 10:00 UTC · Sep 11, 2023RansomwareCVE-2021-31207CVE-2021-34473CVE-2021-34523+8 CVEs60
Organizations are stepping up their game against cyber threatsHelp Net Security·Apr 24, 00:00 UTC · Apr 24, 2023Ransomware60
Log4Shell attacks began two weeks ago, Cisco and Cloudflare sayThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Ransomware in the wild60
Ransomware Group FIN12 Aggressively Going After Healthcare TargetsThe Hacker News·Oct 11, 07:09 UTC · Oct 11, 2021Ransomware60
UNC2447 gang exploited SonicWall ZeroSecurity Affairs·Apr 30, 16:26 UTC · Apr 30, 2021RansomwareCVE-2021-2001660
Black Basta ransomware gang linked to a malware campaignSecurity Affairs·Aug 15, 08:40 UTC · Aug 15, 2024RansomwareCVE-2022-2692360
TeamCity Flaw Leads to Surge in Ransomware, Cryptomining, and RAT AttacksThe Hacker News·Mar 21, 03:22 UTC · Mar 21, 2024RansomwareCVE-2024-2719860
City of Dallas has set a budget of $8.5 million to mitigate the May Royal ransomware attack.Security Affairs·Sep 23, 10:17 UTC · Sep 23, 2023Ransomware60
Power Generator in South Africa hit with DroxiDat and Cobalt StrikeSecurity Affairs·Aug 12, 06:57 UTC · Aug 12, 2023Ransomware60
CISA and FBI warn of Truebot infecting US and Canada based orgsSecurity Affairs·Jul 7, 05:58 UTC · Jul 7, 2023RansomwareCVE-2022-3119960
Microsoft aims at stopping cybercriminals from using cracked copies of Cobalt StrikeSecurity Affairs·Apr 7, 10:38 UTC · Apr 7, 2023Ransomware60
Quarterly Report: Incident Response Trends in Q3 2022Cisco Talos·Oct 25, 12:00 UTC · Oct 25, 2022RansomwareCVE-2020-147260
Cheerscrypt ransomware is linked to Chinese DEVSecurity Affairs·Oct 4, 07:18 UTC · Oct 4, 2022Ransomware60
Avos ransomware group expands with new attack arsenalCisco Talos·Jun 21, 11:58 UTC · Jun 21, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60
Ransomware gang targeting schools, hospitals reinvents itself to avoid scrutinyCyberScoop·Nov 30, 13:10 UTC · Nov 30, 2021Ransomware in the wild60
Case Study: Incident Response is a relationshipCisco Talos·May 17, 12:00 UTC · May 17, 2021Ransomware60
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP SupplyThe Hacker News·Aug 10, 15:03 UTC · Aug 10, 2026Ransomware in the wildCVE-2026-34348CVE-2026-18497CVE-2026-63508+43 CVEs160
ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More StoriesThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Ransomware in the wildCVE-2026-46817CVE-2023-434660
ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 StoriesThe Hacker News·Jul 7, 04:32 UTC · Jul 7, 2026Ransomware60
AI Agent Exploits Langflow RCE to Automate Database Ransomware AttackThe Hacker News·Jul 2, 09:13 UTC · Jul 2, 2026Ransomware in the wildCVE-2025-3248CVE-2021-29441160
Oracle E-Business Suite Flaw CVE-2026The Hacker News·Jun 30, 11:37 UTC · Jun 30, 2026Ransomware in the wildCVE-2026-46817CVE-2025-61882CVE-2026-3527360
Ransomware Trends in Australia: 2021 to 2022Recorded Future·Jun 29, 00:00 UTC · Jun 29, 2026Ransomware60
ThreatsDay Bulletin: Smart TV Proxyware, 24-Year curl Bug, AI Crime Forums + 13 More StoriesThe Hacker News·Jun 25, 12:30 UTC · Jun 25, 2026RansomwareCVE-2026-8932CVE-2026-5016060
Attackers are handing off access in 22 seconds, Mandiant findsHelp Net Security·Jun 19, 12:06 UTC · Jun 19, 2026RansomwareCVE-2025-31324CVE-2025-61882CVE-2025-53770+1 CVEs60
⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AIThe Hacker News·Jun 2, 03:39 UTC · Jun 2, 2026Ransomware in the wildCVE-2026-0257CVE-2026-8732CVE-2026-27771+31 CVEs60
Attackers are bypassing MFA on SonicWall VPNs because something was wrong with previous fixSecurity Affairs·May 21, 14:29 UTC · May 21, 2026Ransomware in the wildCVE-2024-1280260
OpenAI Revokes macOS App Certificate After Malicious Axios Supply Chain IncidentThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026RansomwareCVE-2026-3363460
Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026The Hacker News·Mar 21, 07:03 UTC · Mar 21, 2026Ransomware in the wildCVE-2026-2013160
Interlock group exploiting the CISCO FMC flaw CVE-2026Security Affairs·Mar 19, 09:22 UTC · Mar 19, 2026RansomwareCVE-2026-2013160
AI-assisted Slopoly malware powers Hive0163’s ransomware campaignsSecurity Affairs·Mar 13, 11:36 UTC · Mar 13, 2026Ransomware60