A Basic Timeline of the Exchange Mass-HackKrebs on Security·Mar 8, 16:45 UTC · Mar 8, 2021Ransomware60
PHP command injection flaw exploited to deliver ransomware (CVE-2024-4577)Help Net Security·Jun 13, 00:00 UTC · Jun 13, 2024Ransomware in the wildCVE-2024-4577CVE-2012-1823CVE-2024-357760
Henry IV, Hotspur, Hal, and hallucinationsCisco Talos·Feb 26, 19:00 UTC · Feb 26, 2026Ransomware in the wildCVE-2026-2012760
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [13 January]The Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025Ransomware in the wildCVE-2025-0282CVE-2024-52875CVE-2024-8474+15 CVEs60
Attacks on Exchange servers expand from nationThe Record·Nov 17, 06:58 UTC · Nov 17, 2022Ransomware in the wild60
Conti ransomware gang targets Microsoft Exchange servers with ProxyShell exploitsSecurity Affairs·Sep 3, 17:00 UTC · Sep 3, 2021RansomwareCVE-2021-34473CVE-2021-34523CVE-2021-3120760
New LockFile gang uses ProxyShell and PetitPotam exploitsSecurity Affairs·Aug 23, 20:02 UTC · Aug 23, 2021RansomwareCVE-2021-34473CVE-2021-34523CVE-2021-3120760
WARNING: Microsoft Exchange Under Attack With ProxyShell FlawsThe Hacker News·Aug 23, 13:28 UTC · Aug 23, 2021Ransomware in the wildCVE-2021-34473CVE-2021-34523CVE-2021-3120760
ProxyShell vulnerabilities actively exploited to deliver web shells and ransomwareHelp Net Security·Aug 23, 00:00 UTC · Aug 23, 2021Ransomware in the wildCVE-2021-34473CVE-2021-34523CVE-2021-3120760