Scanning of Palo Alto Portals Surges 500%Infosecurity Magazine·Oct 6, 11:00 UTC · Oct 6, 2025Ransomware60
Fortinet SIEM issue coincides with spike in bruteCyberScoop·Aug 13, 19:21 UTC · Aug 13, 2025Ransomware in the wildCVE-2025-25256CVE-2023-48788CVE-2024-4757560
PTZOptics cameras zeroSecurity Affairs·Nov 2, 07:16 UTC · Nov 2, 2024RansomwareCVE-2024-8956CVE-2024-895760
Microsoft blames Clop gang for 'MOVEit Transfer' attacksSecurity Affairs·Jun 5, 15:07 UTC · Jun 5, 2023Ransomware in the wildCVE-2023-3436260
MOVEit Systems Face Fresh Attack Risk Following Scanning ActivityInfosecurity Magazine·Jun 27, 09:00 UTC · Jun 27, 2025Ransomware in the wildCVE-2023-34362CVE-2023-3693460
MOVEit Transfer Faces Increased Threats as Scanning Surges and CVE Flaws Are TargetedThe Hacker News·Jun 27, 07:49 UTC · Jun 27, 2025Ransomware in the wildCVE-2023-34362CVE-2023-3693460
Hackers Chain Exploits of Three Palo Alto Networks Firewall FlawsInfosecurity Magazine·Feb 20, 12:45 UTC · Feb 20, 2025Ransomware in the wildCVE-2025-0108CVE-2025-0111CVE-2024-947460
Global ransomware spree infects unpatched VMWare servers. CISA has a (possible) fix.CyberScoop·Feb 10, 14:56 UTC · Feb 10, 2023Ransomware in the wild60
295 Malicious IPs Launch Coordinated BruteThe Hacker News·Jun 11, 13:49 UTC · Jun 11, 2025Ransomware45
Questions mount as Ivanti tackles another round of zeroCyberScoop·May 28, 21:39 UTC · May 28, 2025Ransomware in the wildCVE-2025-4427CVE-2025-442860
⚡ THN Weekly Recap: New Attacks, Old Tricks, Bigger ImpactThe Hacker News·May 6, 07:05 UTC · May 6, 2025RansomwareCVE-2025-25015CVE-2025-22224CVE-2025-22225+18 CVEs60
⚡ Weekly Recap: Windows 0-Day, VPN Exploits, Weaponized AI, Hijacked Antivirus and MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025RansomwareCVE-2025-29824CVE-2024-11859CVE-2025-3102+17 CVEs60
BlueKeep RDP flaw: Nearly a million Internet-facing systems are vulnerableHelp Net Security·Nov 15, 08:03 UTC · Nov 15, 2023Ransomware in the wildCVE-2019-070860
In response to Russia threat, US cybersecurity firms offer free services, data, threat intelCyberScoop·Feb 28, 13:42 UTC · Feb 28, 2022Ransomware in the wild60
Nearly 1 Million Computers Still Vulnerable to "Wormable" BlueKeep RDP FlawThe Hacker News·May 28, 12:08 UTC · May 28, 2019RansomwareCVE-2019-070860
Ransomware gangs are exploiting IBM Aspera Faspex RCE flaw (CVE-2022-47986)Help Net Security·Jun 8, 10:37 UTC · Jun 8, 2026Ransomware in the wildCVE-2022-4798660
⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AIThe Hacker News·Jun 2, 03:39 UTC · Jun 2, 2026Ransomware in the wildCVE-2026-0257CVE-2026-8732CVE-2026-27771+31 CVEs60
U.S. CISA adds Google Chromium CSS, Microsoft Windows, TeamT5 ThreatSonar Anti-Ransomware, and Zimbra flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 18, 10:55 UTC · Feb 18, 2026Ransomware in the wildCVE-2008-0015CVE-2020-7796CVE-2024-7694+1 CVEs60
CISA confirms exploitation of VMware ESXi flaw by ransomware attackersHelp Net Security·Feb 5, 00:00 UTC · Feb 5, 2026Ransomware in the wildCVE-2025-22225CVE-2025-22224CVE-2025-2222660
React2Shell fallout spreads to sensitive targets as public exploits hit allCyberScoop·Dec 18, 16:12 UTC · Dec 18, 2025Ransomware in the wildCVE-2025-55182CVE-2025-55183CVE-2025-67779+1 CVEs60
Attacks pinned to critical React2Shell defect surge, surpass 50 confirmed victimsCyberScoop·Dec 11, 17:17 UTC · Dec 11, 2025Ransomware in the wildCVE-2025-5518260
Attackers hit React defect as researchers quibble over proofCyberScoop·Dec 6, 17:14 UTC · Dec 6, 2025Ransomware in the wildCVE-2025-55182CVE-2025-6647860
⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & MoreThe Hacker News·Oct 6, 11:38 UTC · Oct 6, 2025RansomwareCVE-2025-61882CVE-2025-27915CVE-2025-4008+16 CVEs60
Security Affairs newsletter Round 544 by Pierluigi Paganini – INTERNATIONAL EDITIONSecurity Affairs·Oct 5, 11:35 UTC · Oct 5, 2025Ransomware in the wildCVE-2025-4124460
⚡ Weekly Recap: Chrome 0-Day, AI Hacking Tools, DDR5 BitThe Hacker News·Sep 22, 15:16 UTC · Sep 22, 2025Ransomware in the wildCVE-2025-10585CVE-2025-55241CVE-2025-10035+14 CVEs160
A Multi-Method Approach to Identifying Rogue Cobalt Strike ServersRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Ransomware57
Security Affairs newsletter Round 529 by Pierluigi PaganiniSecurity Affairs·Jun 22, 15:07 UTC · Jun 22, 2025Ransomware in the wildCVE-2025-3248CVE-2023-28771CVE-2025-2312160
Leaked Black Basta Ransomware Chat Logs Reveal Inner Workings and Internal ConflictsThe Hacker News·Feb 27, 05:08 UTC · Feb 27, 2025Ransomware in the wildCVE-2024-50623CVE-2009-3960CVE-2010-2861+8 CVEs60
Palo Alto Networks and SonicWall Firewalls Under AttackInfosecurity Magazine·Feb 17, 09:30 UTC · Feb 17, 2025RansomwareCVE-2024-53704CVE-2025-010860
THN Recap: Top Cybersecurity Threats, Tools, and Practices (Oct 28The Hacker News·Nov 5, 03:08 UTC · Nov 5, 2024RansomwareCVE-2024-50550CVE-2024-7474CVE-2024-7475+9 CVEs60
THN Cybersecurity Recap: Last Week's Top Threats and Trends (September 23The Hacker News·Sep 30, 13:22 UTC · Sep 30, 2024Ransomware in the wildCVE-2024-810560
Security Affairs newsletter Round 491 by Pierluigi PaganiniSecurity Affairs·Sep 29, 13:08 UTC · Sep 29, 2024RansomwareCVE-2024-2001760
IntelOwl: Open-source threat intelligence managementHelp Net Security·Aug 14, 00:00 UTC · Aug 14, 2024Ransomware60
PHP command injection flaw exploited to deliver ransomware (CVE-2024-4577)Help Net Security·Jun 13, 00:00 UTC · Jun 13, 2024Ransomware in the wildCVE-2024-4577CVE-2012-1823CVE-2024-357760
Akira, LockBit actively searching for vulnerable Cisco ASA devicesHelp Net Security·Feb 22, 08:54 UTC · Feb 22, 2024RansomwareCVE-2020-3259CVE-2020-358060
Ransomware groups rack up victims among corporate AmericaCyberScoop·Nov 21, 22:06 UTC · Nov 21, 2023Ransomware in the wildCVE-2023-496660
Experts Warn of Ransomware Hackers Exploiting Atlassian and Apache FlawsThe Hacker News·Nov 9, 04:35 UTC · Nov 9, 2023Ransomware in the wildCVE-2023-22518CVE-2023-22515CVE-2023-4660460
Critical Confluence flaw exploited in ransomware attacksSecurity Affairs·Nov 6, 19:09 UTC · Nov 6, 2023Ransomware in the wildCVE-2023-2251860
Critical JetBrains TeamCity Flaw Could Expose Source Code and Build Pipelines to AttackersThe Hacker News·Oct 2, 11:09 UTC · Oct 2, 2023Ransomware in the wildCVE-2023-42793CVE-2023-36618CVE-2023-36619160