A Multi-Method Approach to Identifying Rogue Cobalt Strike ServersRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Ransomware57
Memcached - A Story of Failed Patching & Vulnerable ServersCisco Talos·Jul 17, 14:35 UTC · Jul 17, 2017RansomwareCVE-2016-8704CVE-2016-870660
Preventing Data Loss: Backup and Recovery Strategies for Exchange Server AdministratorsThe Hacker News·Jan 25, 16:22 UTC · Jan 25, 2024Ransomware60
Adversary Infrastructure Report 2020: A Defender’s ViewRecorded Future·Jan 2, 00:00 UTC · Jan 2, 2026Ransomware57
HPE unveils next-generation compute to power hybrid environments and digital transformationHelp Net Security·Nov 3, 00:00 UTC · Nov 3, 2022Ransomware60
Who is Anna-Senpai, the Mirai Worm Author?Krebs on Security·Feb 11, 21:02 UTC · Feb 11, 2017Ransomware45
LockBit is back and threatens to target more government organizationsSecurity Affairs·Feb 27, 07:44 UTC · Feb 27, 2024RansomwareCVE-2023-382460
Microsoft took down 120 of 128 Trickbot servers in recent takedownSecurity Affairs·Oct 21, 06:00 UTC · Oct 21, 2020Ransomware57
Imperva's research shows 75% of open Redis servers are infectedSecurity Affairs·Jun 3, 18:32 UTC · Jun 3, 2018Ransomware57
Head Mare and Twelve: Joint attacks on Russian entitiesKaspersky Securelist·Mar 13, 10:07 UTC · Mar 13, 2025RansomwareCVE-2023-38831CVE-2021-2685560
Head Mare hacktivists: attacks on companies in Russia and BelarusKaspersky Securelist·Sep 2, 10:00 UTC · Sep 2, 2024RansomwareCVE-2023-3883160
Microsoft Vancouver leaking credentials via overlooked DS_STORE fileSecurity Affairs·Dec 9, 00:01 UTC · Dec 9, 2021Ransomware57
OlympicDestroyer is here to trick the industryKaspersky Securelist·Mar 8, 17:00 UTC · Mar 8, 2018Ransomware57
Multi-Layered TDS Infrastructure Linked to Major Cyber ThreatsRecorded Future·Sep 5, 00:00 UTC · Sep 5, 2024Ransomware57
Attacks on Exchange servers expand from nationThe Record·Nov 17, 06:58 UTC · Nov 17, 2022Ransomware in the wild60
Thomson Reuters collected and leaked at least 3TB of sensitive dataSecurity Affairs·Oct 27, 14:34 UTC · Oct 27, 2022Ransomware57
Xbash Combines Botnet, Ransomware, Coinmining in Worm that Targets Linux and WindowsPalo Alto Unit 42·Mar 24, 08:51 UTC · Mar 24, 2022Ransomware57
A Dissection of the “EsteemAudit” Windows Remote Desktop ExploitPalo Alto Unit 42·May 31, 12:00 UTC · May 31, 2017RansomwareCVE-2017-907360
Kaspersky DDoS Intelligence Report Q3 2015Kaspersky Securelist·Nov 3, 11:03 UTC · Nov 3, 2015Ransomware45
Microsoft's End of Support for Exchange 2016 and 2019: What IT Teams Must Do NowThe Hacker News·Feb 20, 10:00 UTC · Feb 20, 2025Ransomware60
Almost 2,000 Exchange servers hacked using ProxyShell exploitThe Record·Dec 15, 00:00 UTC · Dec 15, 2022RansomwareCVE-2021-34473CVE-2021-34523CVE-2021-3120760
Analytical report on DDoS attacks in the second quarter of 2021Kaspersky Securelist·Jul 28, 10:00 UTC · Jul 28, 2021Ransomware57
The Shade Encryptor: a Double ThreatKaspersky Securelist·Sep 14, 12:54 UTC · Sep 14, 2015Ransomware57
Mespinoza Ransomware Gang Calls Victims “Partners,” Attacks with Gasket, "MagicSocks" ToolsPalo Alto Unit 42·Jun 6, 12:21 UTC · Jun 6, 2024Ransomware57
Progress Software Releases Urgent Hotfixes for Multiple Security Flaws in WS_FTP ServerThe Hacker News·Oct 9, 06:43 UTC · Oct 9, 2023Ransomware in the wildCVE-2023-40044CVE-2023-42657CVE-2023-40045+5 CVEs60
IT threat evolution Q3 2022Kaspersky Securelist·Nov 18, 08:00 UTC · Nov 18, 2022RansomwareCVE-2017-1027160
Kaspersky Q4 2021 DDoS attack reportKaspersky Securelist·Feb 10, 10:00 UTC · Feb 10, 2022RansomwareCVE-2017-6079CVE-2021-22205CVE-2021-3626060
Microsoft Exchange vulnerabilities exploited once again for ransomware, this time with BabukCisco Talos·Nov 3, 12:00 UTC · Nov 3, 2021RansomwareCVE-2021-3694260
Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channelCisco Talos·Jul 23, 10:00 UTC · Jul 23, 2026Ransomware57
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangsCisco Talos·Apr 23, 10:00 UTC · Apr 23, 2025Ransomware60
MS SQL servers are getting hacked to deliver ransomware to orgsHelp Net Security·Sep 27, 00:00 UTC · Sep 27, 2022Ransomware57
A server of the Jenkins project hacked by exploiting a Confluence flawSecurity Affairs·Sep 7, 13:04 UTC · Sep 7, 2021RansomwareCVE-2021-2608460
Lifting the veil on DeathStalker, a mercenary triumvirateKaspersky Securelist·Aug 24, 10:00 UTC · Aug 24, 2020Ransomware57
San Francisco Rail System Hacker HackedKrebs on Security·Nov 29, 22:30 UTC · Nov 29, 2016Ransomware60
Russian-speaking cybercrime evolution: What changed from 2016 to 2021Kaspersky Securelist·Oct 21, 13:02 UTC · Oct 21, 2021Ransomware57
Plug critical VMware vCenter Server flaw before ransomware gangs start exploiting it (CVE-2021-22005)Help Net Security·Sep 29, 14:29 UTC · Sep 29, 2021Ransomware in the wildCVE-2021-22005CVE-2021-21985CVE-2021-2197260