Threat Source newsletter (Sept. 30, 2021)Cisco Talos·Sep 30, 18:00 UTC · Sep 30, 2021Ransomware in the wildCVE-2021-37973CVE-2021-2200560
New BlackCat Ransomware Variant Adopts Advanced Impacket and RemCom ToolsThe Hacker News·Aug 21, 03:44 UTC · Aug 21, 2023RansomwareCVE-2020-1472CVE-2023-2753260
Millions Of Smartphones Using Broadcom Wi-Fi Chip Can Be Hacked Over-theThe Hacker News·Apr 5, 10:36 UTC · Apr 5, 2017Ransomware57
Microsoft patches zero-day actively exploited in string of ransomware attacksCyberScoop·Apr 8, 21:22 UTC · Apr 8, 2025Ransomware in the wildCVE-2025-29824CVE-2025-29792CVE-2025-29793+3 CVEs160
Threat Source newsletter (Jan. 28, 2021)Cisco Talos·Jan 28, 19:00 UTC · Jan 28, 2021Ransomware in the wild60
Microsoft Exchange vulnerabilities exploited once again for ransomware, this time with BabukCisco Talos·Nov 3, 12:00 UTC · Nov 3, 2021RansomwareCVE-2021-3694260
Cisco fixed multiple flaws in SDSecurity Affairs·Apr 8, 12:32 UTC · Apr 8, 2021RansomwareCVE-2021-1479CVE-2021-1137CVE-2021-1480+1 CVEs60
Microsoft Warns Developers of Fake Next.js Job Repos Delivering InThe Hacker News·Mar 10, 05:53 UTC · Mar 10, 2026Ransomware57
Storm-2603 spotted deploying ransomware on exploited SharePoint serversHelp Net Security·Aug 4, 12:44 UTC · Aug 4, 2025Ransomware in the wildCVE-2025-53770CVE-2025-49706CVE-2025-49704+2 CVEs60
CISA and FBI warn of Truebot infecting US and Canada based orgsSecurity Affairs·Jul 7, 05:58 UTC · Jul 7, 2023RansomwareCVE-2022-3119960
A Look Into Public Clouds From the Ransomware Actor's PerspectivePalo Alto Unit 42·Jun 5, 22:33 UTC · Jun 5, 2024Ransomware60
Veeam addressed critical Service Provider Console (VSPC) bugSecurity Affairs·Dec 4, 15:12 UTC · Dec 4, 2024RansomwareCVE-2024-42448CVE-2024-42449CVE-2024-4071160
Prestige ransomware targets organizations in Ukraine and PolandSecurity Affairs·Oct 16, 23:22 UTC · Oct 16, 2022Ransomware60
Threat Source Newsletter (May 13, 2021)Cisco Talos·May 13, 18:00 UTC · May 13, 2021Ransomware in the wildCVE-2021-31166CVE-2021-146860
Attackers exploited a Mitel VOIP zeroSecurity Affairs·Jun 25, 11:59 UTC · Jun 25, 2022RansomwareCVE-2022-2949960
THN Weekly Roundup — 10 Most Important Stories You Shouldn't MissThe Hacker News·Jul 22, 18:40 UTC · Jul 22, 2017Ransomware in the wildCVE-2017-11421CVE-2017-7494CVE-2017-976560
Threat Source newsletter (March 19, 2020)Cisco Talos·Mar 19, 18:00 UTC · Mar 19, 2020Ransomware in the wildCVE-2020-1018960
Oracle patches critical E-Business Suite flaw exploited by Cl0p hackersSecurity Affairs·Oct 6, 19:51 UTC · Oct 6, 2025Ransomware in the wildCVE-2025-6188260
ThreatsDay Bulletin: FortiGate RaaS, Citrix Exploits, MCP Abuse, LiveChat Phish & MoreThe Hacker News·Mar 19, 14:25 UTC · Mar 19, 2026Ransomware in the wildCVE-2024-55591CVE-2025-71257CVE-2025-71258+4 CVEs60
Almost 2,000 Exchange servers hacked using ProxyShell exploitThe Record·Dec 15, 00:00 UTC · Dec 15, 2022RansomwareCVE-2021-34473CVE-2021-34523CVE-2021-3120760
Bad Rabbit Ransomware Uses Leaked 'EternalRomance' NSA Exploit to SpreadThe Hacker News·Oct 27, 10:57 UTC · Oct 27, 2017RansomwareCVE-2017-014560
⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AIThe Hacker News·Jun 2, 03:39 UTC · Jun 2, 2026Ransomware in the wildCVE-2026-0257CVE-2026-8732CVE-2026-27771+31 CVEs60
Threat Source Newsletter (Jan. 13, 2022)Cisco Talos·Jan 13, 19:00 UTC · Jan 13, 2022Ransomware in the wildCVE-2022-21840CVE-2022-21841CVE-2022-21837+1 CVEs60
Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEThe Hacker News·Aug 3, 16:06 UTC · Aug 3, 2026Ransomware in the wildCVE-2026-1256960
Older vulnerabilities and those with lower severity scores still being exploited by ransomwareHelp Net Security·Sep 25, 00:00 UTC · Sep 25, 2019Ransomware60
Security Affairs newsletter Round 550 by Pierluigi PaganiniSecurity Affairs·Nov 16, 15:27 UTC · Nov 16, 2025Ransomware in the wildCVE-2025-1248060
After remote-code test, DHS sounds the alarm on BlueKeepCyberScoop·Jun 17, 21:38 UTC · Jun 17, 2019Ransomware in the wild160
Oracle EBS Under Fire as Cl0p Exploits CVE-2025-61882 in RealThe Hacker News·Oct 8, 04:30 UTC · Oct 8, 2025Ransomware in the wildCVE-2025-6188260
Attackers Abuse Velociraptor Forensic Tool to Deploy Visual Studio Code for C2 TunnelingThe Hacker News·Sep 3, 04:55 UTC · Sep 3, 2025Ransomware157
Threat Source Newsletter (March 25, 2021)Cisco Talos·Mar 25, 18:00 UTC · Mar 25, 2021RansomwareCVE-2020-3523160
Several New Critical Flaws Affect CODESYS Industrial Automation SoftwareThe Hacker News·Jul 22, 03:38 UTC · Jul 22, 2021RansomwareCVE-2021-29238CVE-2021-29240CVE-2021-29241+6 CVEs60
NonKaspersky Securelist·Aug 15, 12:00 UTC · Aug 15, 2022RansomwareCVE-2022-26809CVE-2022-24491CVE-2022-24497+1 CVEs160
Threat Source newsletter for June 11, 2020Cisco Talos·Jun 11, 18:00 UTC · Jun 11, 2020Ransomware in the wild60
Hackers Found Exploiting Oracle WebLogic RCE Flaw to Spread RansomwareThe Hacker News·May 1, 07:31 UTC · May 1, 2019Ransomware in the wildCVE-2019-272560
Threat Brief: Office Documents Can Be Dangerous (But We’ll Continue to Use Them Anyway)Palo Alto Unit 42·Sep 21, 18:41 UTC · Sep 21, 2020Ransomware in the wildCVE-2018-4878CVE-2017-11882CVE-2018-0802+4 CVEs160
Threat Source newsletter (Aug. 12, 2021)Cisco Talos·Aug 12, 18:00 UTC · Aug 12, 2021RansomwareCVE-2021-2642460
PwnedPiper PTS Security Flaws Threaten 80% of Hospitals in the U.S.The Hacker News·Aug 12, 13:04 UTC · Aug 12, 2021RansomwareCVE-2021-37161CVE-2021-37162CVE-2021-37163+5 CVEs60