IT threat evolution Q3 2022Kaspersky Securelist·Nov 18, 08:00 UTC · Nov 18, 2022RansomwareCVE-2017-1027160
Analysis of Cuba ransomware gang activity and toolingKaspersky Securelist·Sep 11, 10:00 UTC · Sep 11, 2023RansomwareCVE-2021-31207CVE-2021-34473CVE-2021-34523+8 CVEs60
Andariel deploys DTrack and Maui ransomwareKaspersky Securelist·Aug 9, 14:25 UTC · Aug 9, 2022RansomwareCVE-2017-1027160
Updated PClock Ransomware Still Comes Up ShortPalo Alto Unit 42·Jan 28, 22:09 UTC · Jan 28, 2022Ransomware57
North Korean Hackers Spotted Using New MultiThe Hacker News·Jul 23, 09:18 UTC · Jul 23, 2020Ransomware57
Head Mare and Twelve: Joint attacks on Russian entitiesKaspersky Securelist·Mar 13, 10:07 UTC · Mar 13, 2025RansomwareCVE-2023-38831CVE-2021-2685560
Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channelCisco Talos·Jul 23, 10:00 UTC · Jul 23, 2026Ransomware57
Chaos ransomware deploys browser-based msaRAT to evade network detectionSecurity Affairs·Jul 23, 18:27 UTC · Jul 23, 2026Ransomware57
TrickBot targets Italy using fake WHO Coronavirus emails as baitSecurity Affairs·Mar 6, 13:23 UTC · Mar 6, 2020Ransomware57
Ransomware attackers quickly weaponize PHP vulnerability with 9.8 severity ratingArs Technica · Security·Jun 15, 00:00 UTC · Jun 15, 2024Ransomware57
French Transport Giant Exposes 57,000 Employees and Source CodeInfosecurity Magazine·Dec 8, 10:25 UTC · Dec 8, 2021Ransomware57
Evolution of Mallox: from private ransomware to RaaSKaspersky Securelist·Sep 4, 10:01 UTC · Sep 4, 2024Ransomware57
New Ransomware-as-a-Service Tool ‘Thanos’ Shows Connections to ‘Hakbit’Recorded Future·Jun 29, 00:00 UTC · Jun 29, 2026Ransomware57
TeamPCP Targets Telnyx Package in Latest Software Supply Chain AttackInfosecurity Magazine·Mar 27, 15:06 UTC · Mar 27, 2026Ransomware57
Multi-Stage Phishing Campaign Targets Russia with Amnesia RAT and RansomwareThe Hacker News·Jan 24, 11:09 UTC · Jan 24, 2026Ransomware57
Blind Eagle Hacking Group Targets South America With New ToolsInfosecurity Magazine·Jan 6, 17:00 UTC · Jan 6, 2023Ransomware57
Attackers use domain fronting technique to target Myanmar with Cobalt StrikeCisco Talos·Nov 16, 12:00 UTC · Nov 16, 2021Ransomware57
Iranian APT UNC1860 Linked to MOIS Facilitates Cyber Intrusions in Middle EastThe Hacker News·Sep 20, 12:44 UTC · Sep 20, 2024RansomwareCVE-2019-060460
Here’s all the ways an abandoned cloud instance can cause security issuesCyberScoop·Feb 4, 15:42 UTC · Feb 4, 2025Ransomware57
CryPy: ransomware behind Israeli linesKaspersky Securelist·Oct 13, 09:26 UTC · Oct 13, 2016Ransomware57
Andariel evolves to target South Korea with ransomwareKaspersky Securelist·Jun 15, 12:40 UTC · Jun 15, 2021Ransomware57
Iranian APT MuddyWater targets Turkish users via malicious PDFs, executablesCisco Talos·Jan 31, 13:00 UTC · Jan 31, 2022Ransomware57
De-anonymizing ransomware domains on the dark webCisco Talos·Jun 28, 12:00 UTC · Jun 28, 2022Ransomware57
Cuba Ransomware Group Unleashes Undetectable MalwareInfosecurity Magazine·Sep 11, 17:30 UTC · Sep 11, 2023Ransomware57
Xbash Combines Botnet, Ransomware, Coinmining in Worm that Targets Linux and WindowsPalo Alto Unit 42·Mar 24, 08:51 UTC · Mar 24, 2022Ransomware57
XBash combines features from ransomware, miners, botnets, and wormsSecurity Affairs·Sep 18, 06:40 UTC · Sep 18, 2018RansomwareCVE-2016-308860