Exploring vulnerable Windows driversCisco Talos·Dec 19, 11:04 UTC · Dec 19, 2024RansomwareCVE-2022-369960
Vice Society leverages PrintNightmare in ransomware attacksCisco Talos·Aug 12, 22:33 UTC · Aug 12, 2021RansomwareCVE-2021-1675CVE-2021-3452760
It’s apparently hip to still be using Windows 7Cisco Talos·May 25, 18:00 UTC · May 25, 2023RansomwareCVE-2023-27930CVE-2023-28204CVE-2023-32373+1 CVEs60
Windows 10 to Get Built-in Protection Against Most Ransomware AttacksThe Hacker News·Jun 30, 10:38 UTC · Jun 30, 2017Ransomware60
Don't tell people to turn off Windows Update, just don'tTroy Hunt·May 15, 07:47 UTC · May 15, 2017Ransomware60
High Number of Windows 10 Users Remain as End-ofInfosecurity Magazine·Oct 9, 09:00 UTC · Oct 9, 2025Ransomware60
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangsCisco Talos·Apr 23, 10:00 UTC · Apr 23, 2025Ransomware60
Head Mare and Twelve: Joint attacks on Russian entitiesKaspersky Securelist·Mar 13, 10:07 UTC · Mar 13, 2025RansomwareCVE-2023-38831CVE-2021-2685560
Head Mare hacktivists: attacks on companies in Russia and BelarusKaspersky Securelist·Sep 2, 10:00 UTC · Sep 2, 2024RansomwareCVE-2023-38831160
Unpatchable 'DoubleAgent' Attack Can Hijack All Windows Versions — Even Your Antivirus!The Hacker News·Mar 22, 14:53 UTC · Mar 22, 2017RansomwareCVE-2017-5567CVE-2017-5566CVE-2017-6417+2 CVEs60
Andariel deploys DTrack and Maui ransomwareKaspersky Securelist·Aug 9, 14:25 UTC · Aug 9, 2022RansomwareCVE-2017-10271160
Twelve: from initial compromise to ransomware and wipersKaspersky Securelist·Sep 20, 13:33 UTC · Sep 20, 2024RansomwareCVE-2021-21972CVE-2021-2200560
Cisco Talos shares insights related to recent cyber attack on CiscoCisco Talos·Aug 10, 19:30 UTC · Aug 10, 2022Ransomware60
New BYOVD loader behind DeadLock ransomware attackCisco Talos·Dec 9, 11:00 UTC · Dec 9, 2025RansomwareCVE-2024-5132460
Windows CLFS and five exploits used by ransomware operators (Exploit #1 – CVE-2022Kaspersky Securelist·Dec 21, 10:28 UTC · Dec 21, 2023Ransomware in the wildCVE-2022-24521CVE-2023-23376CVE-2023-28252+2 CVEs60
Microsoft, Adobe Ship Critical FixesKrebs on Security·Jun 15, 00:00 UTC · Jun 15, 2017Ransomware in the wildCVE-2017-854360
Windows CLFS and five exploits used by ransomware operatorsKaspersky Securelist·Dec 21, 09:53 UTC · Dec 21, 2023RansomwareCVE-2023-28252CVE-2022-24521CVE-2022-37969+1 CVEs60
Are you ready for a second wave of WannaCry ransomware?Help Net Security·Jun 26, 21:23 UTC · Jun 26, 2018Ransomware60
Microsoft Adding Artificial-Intelligence Based Advanced Antivirus to Windows 10The Hacker News·Jun 28, 16:18 UTC · Jun 28, 2017Ransomware60
Threat Assessment: Black Basta RansomwarePalo Alto Unit 42·Jun 5, 17:55 UTC · Jun 5, 2024Ransomware60
Ransomware Gangs Exploiting Windows Print Spooler VulnerabilitiesThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2021RansomwareCVE-2021-1675CVE-2021-34527CVE-2021-34481+4 CVEs60
WannaCry Ransomware: Everything You Need To Know ImmediatelyThe Hacker News·Mar 15, 19:48 UTC · Mar 15, 2018RansomwareCVE-2017-014860
Linux variant of Qilin Ransomware targets Windows via remote management tools and BYOVDSecurity Affairs·Oct 27, 10:45 UTC · Oct 27, 2025Ransomware60
Talos IR ransomware engagements and the significance of timeliness in incident responseCisco Talos·Jul 16, 10:00 UTC · Jul 16, 2025RansomwareCVE-2024-57727160
Windows CLFS and five exploits used by ransomware operators (Exploit #4 – CVE-2023Kaspersky Securelist·Dec 21, 10:30 UTC · Dec 21, 2023RansomwareCVE-2022-24521CVE-2023-23376CVE-2023-28252+3 CVEs60
A Dissection of the “EsteemAudit” Windows Remote Desktop ExploitPalo Alto Unit 42·May 31, 12:00 UTC · May 31, 2017RansomwareCVE-2017-907360
October 2025 CVE LandscapeRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Ransomware in the wildCVE-2025-59287CVE-2025-61882CVE-2025-41244+29 CVEs60
Defending against USB drive attacks with WazuhThe Hacker News·Mar 5, 14:08 UTC · Mar 5, 2025Ransomware60
Urgent: Microsoft Issues Patches for 97 Flaws, Including Active Ransomware ExploitThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2023Ransomware in the wildCVE-2023-28252CVE-2022-24521CVE-2022-37969+6 CVEs60
Experts link the Black Basta ransomware operation to FIN7 cybercrime gangSecurity Affairs·Nov 3, 12:34 UTC · Nov 3, 2022RansomwareCVE-2022-3019060
Windows CLFS and five exploits used by ransomware operators (Exploit #5 – CVE-2023Kaspersky Securelist·Dec 21, 10:30 UTC · Dec 21, 2023Ransomware in the wildCVE-2022-24521CVE-2023-23376CVE-2023-2825260
Windows CLFS and five exploits used by ransomware operators (Exploit #2Kaspersky Securelist·Dec 21, 10:29 UTC · Dec 21, 2023Ransomware in the wildCVE-2022-24521CVE-2023-23376CVE-2023-28252+2 CVEs60
Snatch Ransomware Reboots Windows in Safe Mode to Bypass AntivirusThe Hacker News·Dec 10, 09:28 UTC · Dec 10, 2019Ransomware60
XPAJ: Reversing a Windows x64 BootkitKaspersky Securelist·Jun 19, 18:16 UTC · Jun 19, 2012Ransomware60
The Gentlemen RaaS: rapid growth and a new ransomware variantKaspersky Securelist·Jun 30, 10:06 UTC · Jun 30, 2026Ransomware160