Exploitation is underway for a critical flaw in Atlassian Confluence Server and Data CenterSecurity Affairs·Jul 29, 11:27 UTC · Jul 29, 2022RansomwareCVE-2022-2613860
A server of the Jenkins project hacked by exploiting a Confluence flawSecurity Affairs·Sep 7, 13:04 UTC · Sep 7, 2021RansomwareCVE-2021-2608460
Critical Confluence flaw exploited in ransomware attacksSecurity Affairs·Nov 6, 19:09 UTC · Nov 6, 2023Ransomware in the wildCVE-2023-2251860
Ransomware gangs are exploiting CVE-2022-26134 RCE in Atlassian Confluence serversSecurity Affairs·Jun 12, 14:14 UTC · Jun 12, 2022RansomwareCVE-2022-2613460
Linux variant of Cerber ransomware targets Atlassian serversSecurity Affairs·Apr 17, 18:01 UTC · Apr 17, 2024RansomwareCVE-2023-2251860
Atlassian confirms ransomware is exploiting latest Confluence bugThe Record·Nov 7, 19:14 UTC · Nov 7, 2023Ransomware in the wildCVE-2023-22518CVE-2021-2608460
Microsoft: Ransomware groups, nation-states exploiting Atlassian Confluence vulnerabilityThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Ransomware in the wildCVE-2022-2613460
Attackers actively exploiting Atlassian Confluence and Oracle WebLogic flawsHelp Net Security·May 2, 00:00 UTC · May 2, 2019RansomwareCVE-2019-2725CVE-2019-339660
USCYBERCOM & CISA warn orgs to fix CVE-2021Security Affairs·Sep 3, 21:48 UTC · Sep 3, 2021Ransomware in the wildCVE-2021-2608460
Confluence and GitLab servers targeted by new ransomware strainThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Ransomware in the wildCVE-2021-26084CVE-2021-2220560
Atlassian Confluence Flaw Being Used to Deploy Ransomware and Crypto MinersThe Hacker News·Jun 18, 04:11 UTC · Jun 18, 2022RansomwareCVE-2022-26134CVE-2021-2608460
Hackers Exploit Misconfigured YARN, Docker, Confluence, Redis Servers for Crypto MiningThe Hacker News·Mar 12, 08:59 UTC · Mar 12, 2024RansomwareCVE-2021-44228CVE-2022-26134160
Amid NSA warning, attacks on Confluence have risen in recent weeksCyberScoop·Nov 7, 16:57 UTC · Nov 7, 2019Ransomware in the wildCVE-2019-339660
Critical Atlassian Flaw Exploited to Deploy Linux Variant of Cerber RansomwareThe Hacker News·Apr 18, 03:38 UTC · Apr 18, 2024RansomwareCVE-2023-2251860
Critical Atlassian Bug Exploited in Ransomware AttacksInfosecurity Magazine·Nov 7, 09:30 UTC · Nov 7, 2023Ransomware in the wildCVE-2023-22518CVE-2023-2251560
Cyber Command alerts US firms of 'ongoing' hacks targeting Atlassian enterprise softwareCyberScoop·Sep 3, 15:11 UTC · Sep 3, 2021Ransomware in the wildCVE-2021-2608460
Jordanian initial access broker pleads guilty to helping target 50 companiesThe Record·Jan 16, 18:56 UTC · Jan 16, 2026RansomwareCVE-2022-2613460
Linux Cerber Ransomware Variant Exploits Atlassian ServersInfosecurity Magazine·Apr 17, 17:00 UTC · Apr 17, 2024RansomwareCVE-2023-2251860
Threat Source newsletter (Sept. 9, 2021)Cisco Talos·Sep 9, 18:00 UTC · Sep 9, 2021Ransomware in the wildCVE-2021-2608460
A new video series, Google Forms spam and the various gray areas of cyber attacksCisco Talos·Nov 9, 19:00 UTC · Nov 9, 2023RansomwareCVE-2023-2251860
Experts Warn of Ransomware Hackers Exploiting Atlassian and Apache FlawsThe Hacker News·Nov 9, 04:35 UTC · Nov 9, 2023Ransomware in the wildCVE-2023-22518CVE-2023-22515CVE-2023-4660460
Initial access broker pleads guilty to selling access to 50 corporate networksHelp Net Security·Jan 20, 00:00 UTC · Jan 20, 2026RansomwareCVE-2021-42321CVE-2022-2613460
Hackers Exploit Apache HTTP Server Flaw to Deploy Linuxsys Cryptocurrency MinerThe Hacker News·Jul 21, 06:31 UTC · Jul 21, 2025RansomwareCVE-2021-41773CVE-2024-36401CVE-2023-22527+5 CVEs60
Leaked Black Basta Ransomware Chat Logs Reveal Inner Workings and Internal ConflictsThe Hacker News·Feb 27, 05:08 UTC · Feb 27, 2025Ransomware in the wildCVE-2024-50623CVE-2009-3960CVE-2010-2861+8 CVEs60
BianLian Threat Actors Exploiting JetBrains TeamCity Flaws in Ransomware AttacksThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2024RansomwareCVE-2024-27198CVE-2023-42793CVE-2023-2252760
CISA Warning: Akira Ransomware Exploiting Cisco ASA/FTD VulnerabilityThe Hacker News·Feb 17, 07:06 UTC · Feb 17, 2024Ransomware in the wildCVE-2020-3259CVE-2023-2252760
Week in review: Microsoft fixes Follina, cybersecurity pros quitting, (IN)SECURE Magazine RSAC 2022Help Net Security·Jan 7, 10:33 UTC · Jan 7, 2024RansomwareCVE-2022-3019060
Pro-Ukraine group says it took down Trigona ransomware websiteThe Record·Oct 18, 15:52 UTC · Oct 18, 2023Ransomware57
Week in review: Patch Tuesday forecast, 9 free ransomware guides, Cybertech Europe 2023Help Net Security·Oct 8, 00:00 UTC · Oct 8, 2023Ransomware in the wildCVE-2023-4211CVE-2023-4911CVE-2023-40044+6 CVEs60
CISOs Reveal Biggest Challenges for Security TeamsInfosecurity Magazine·Feb 10, 11:30 UTC · Feb 10, 2022Ransomware60
Semiconductor Companies Targeted by RansomwareRecorded Future·Jun 29, 00:00 UTC · Jun 29, 2026Ransomware60
Hacking the Media: The PR Tactics of CybercriminalsRecorded Future·Jun 4, 00:00 UTC · Jun 4, 2026Ransomware57
Security coverage is falling behind the way attackers behaveHelp Net Security·Dec 31, 00:00 UTC · Dec 31, 2025Ransomware60
Remote Threats to Remote Employees: How Working From Home Increases the Attack SurfaceRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025RansomwareCVE-2019-1579CVE-2019-11510CVE-2018-13379+1 CVEs60
Initial Access Brokers Shift Tactics, Selling More for LessThe Hacker News·Apr 11, 10:30 UTC · Apr 11, 2025Ransomware60
RansomHub Ransomware Group Targets 210 Victims Across Critical SectorsThe Hacker News·Sep 3, 12:52 UTC · Sep 3, 2024RansomwareCVE-2023-46604CVE-2023-22515CVE-2023-3519+3 CVEs60
Security Affairs newsletter Round 487 by Pierluigi PaganiniSecurity Affairs·Sep 1, 08:55 UTC · Sep 1, 2024Ransomware in the wildCVE-2024-37085CVE-2023-2252760
How RansomHub went from zero to 210 victims in six monthsHelp Net Security·Aug 30, 00:00 UTC · Aug 30, 2024Ransomware57