DragonForce Malaysia Group Releases Windows LPE Exploit and Turns to Ransomware TacticsInfosecurity Magazine·Jun 30, 16:30 UTC · Jun 30, 2022Ransomware57
A closer look at the global threat landscapeHelp Net Security·Feb 13, 00:00 UTC · Feb 13, 2020Ransomware57
Preventing Data Loss: Backup and Recovery Strategies for Exchange Server AdministratorsThe Hacker News·Jan 25, 16:22 UTC · Jan 25, 2024Ransomware60
Experts warn of concerns around Microsoft RPC bugThe Record·Apr 21, 00:00 UTC · Apr 21, 2022RansomwareCVE-2022-26809160
What about WannaCry 2.0? Improvements of the ransomware code would have unpredictable consequencesSecurity Affairs·May 14, 13:28 UTC · May 14, 2017Ransomware57
Adobe, Microsoft Push Critical Security FixesKrebs on Security·Jul 11, 22:54 UTC · Jul 11, 2017Ransomware60
Do you want penetrate an airport network? An RDP access to internal machine goes for $10Security Affairs·Jul 11, 19:56 UTC · Jul 11, 2018Ransomware60
Rapid7 warns of RDP exposure for millions of endpointsSecurity Affairs·Aug 14, 21:54 UTC · Aug 14, 2017RansomwareCVE-2017-017660
Threat Source newsletter (May 27, 2021)Cisco Talos·May 27, 17:56 UTC · May 27, 2021RansomwareCVE-2021-2116060
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangsCisco Talos·Apr 23, 10:00 UTC · Apr 23, 2025Ransomware60
Microsoft investigating alleged Exchange zeroThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Ransomware in the wildCVE-2022-41040CVE-2022-4108260
Bad Rabbit Ransomware Uses Leaked 'EternalRomance' NSA Exploit to SpreadThe Hacker News·Oct 27, 10:57 UTC · Oct 27, 2017RansomwareCVE-2017-014560
Attackers use domain fronting technique to target Myanmar with Cobalt StrikeCisco Talos·Nov 16, 12:00 UTC · Nov 16, 2021Ransomware57
A Dissection of the “EsteemAudit” Windows Remote Desktop ExploitPalo Alto Unit 42·May 31, 12:00 UTC · May 31, 2017RansomwareCVE-2017-907360
Maastricht University finally paid a 30 bitcoin ransom to crooksSecurity Affairs·Feb 9, 09:42 UTC · Feb 9, 2020Ransomware60
Head Mare and Twelve: Joint attacks on Russian entitiesKaspersky Securelist·Mar 13, 10:07 UTC · Mar 13, 2025RansomwareCVE-2023-38831CVE-2021-2685560
Windows CLFS and five exploits used by ransomware operatorsKaspersky Securelist·Dec 21, 09:53 UTC · Dec 21, 2023RansomwareCVE-2023-28252CVE-2022-24521CVE-2022-37969+1 CVEs60
BlackMatter Ransomware Emerges As Successor to DarkSide, REvilRecorded Future·Jun 29, 00:00 UTC · Jun 29, 2026Ransomware60
Review: Group-IB Threat Hunting FrameworkHelp Net Security·Jun 15, 08:51 UTC · Jun 15, 2021Ransomware60
Vice Society ransomware also exploits PrintNightmare flaws in its attackSecurity Affairs·Aug 13, 17:16 UTC · Aug 13, 2021RansomwareCVE-2021-1675CVE-2021-34527CVE-2021-3695860
Ransomware group breached SmarterTools via flaw in its SmarterMail deploymentHelp Net Security·Feb 9, 00:00 UTC · Feb 9, 2026Ransomware in the wildCVE-2026-2442360
ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force, 17-YearThe Hacker News·Apr 17, 14:47 UTC · Apr 17, 2026Ransomware in the wildCVE-2026-33825CVE-2009-0238160
Threat Brief: WanaCrypt0rPalo Alto Unit 42·Jan 28, 22:07 UTC · Jan 28, 2022Ransomware in the wildCVE-2017-014460
How weak passwords and other failings led to catastrophic breach of AscensionArs Technica · Security·Sep 18, 14:31 UTC · Sep 18, 2025Ransomware157
Ransomware gang masking PipeMagic backdoor as ChatGPT desktop app: MicrosoftThe Record·Aug 18, 20:20 UTC · Aug 18, 2025RansomwareCVE-2025-2982460
Microsoft: Zero-day bug used in ransomware attacks on US real estate firmsThe Record·Apr 8, 20:41 UTC · Apr 8, 2025Ransomware in the wildCVE-2025-29824CVE-2025-2498360
#Infosec2025: Cybersecurity Lessons From Maersk’s Former CISOInfosecurity Magazine·Jun 5, 19:05 UTC · Jun 5, 2025Ransomware60
Everest gang demands $200K for data stolen from South Africa stateSecurity Affairs·Oct 9, 17:08 UTC · Oct 9, 2022Ransomware57
Defending against USB drive attacks with WazuhThe Hacker News·Mar 5, 14:08 UTC · Mar 5, 2025Ransomware60
Legit tools, illicit uses: Velociraptor, Nezha turned against victimsHelp Net Security·Oct 15, 11:50 UTC · Oct 15, 2025RansomwareCVE-2025-626460
Velociraptor leveraged in ransomware attacksCisco Talos·Oct 9, 10:00 UTC · Oct 9, 2025RansomwareCVE-2025-6264160
Shadow Brokers are back after WannaCry case, it plans to offer data dump on monthly subscription modelSecurity Affairs·May 17, 08:03 UTC · May 17, 2017Ransomware57
New Report Highlights Common Passwords in RDP AttacksInfosecurity Magazine·Mar 18, 14:45 UTC · Mar 18, 2025Ransomware57
Nebulon Medusa2 SPU unifies storage, cyber and networking servicesHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2023Ransomware57
Microsoft Fixes ZeroInfosecurity Magazine·Apr 12, 09:30 UTC · Apr 12, 2023Ransomware in the wildCVE-2023-28252CVE-2023-2155460
OlympicDestroyer is here to trick the industryKaspersky Securelist·Mar 8, 17:00 UTC · Mar 8, 2018Ransomware57
Microsoft Is Paying Up To $250,000 With Its New Bug Bounty ProgramThe Hacker News·Jul 26, 18:52 UTC · Jul 26, 2017Ransomware160
Avos ransomware group expands with new attack arsenalCisco Talos·Jun 21, 11:58 UTC · Jun 21, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60