MOVEit Transfer zero-day was exploited by Cl0p gang (CVE-2023-34362)Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Ransomware in the wildCVE-2023-3436260
Redefining IABs: Impacts of compartmentalization on threat tracking and modelingCisco Talos·May 13, 10:00 UTC · May 13, 2025Ransomware60
FIN8-linked actor targets Citrix NetScaler systemsSecurity Affairs·Aug 29, 15:14 UTC · Aug 29, 2023RansomwareCVE-2023-351960
Microsoft blames Clop gang for 'MOVEit Transfer' attacksSecurity Affairs·Jun 5, 15:07 UTC · Jun 5, 2023Ransomware in the wildCVE-2023-3436260
CISA issues directive for exploited VMware bug after IR team deployed to ‘large’ orgThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Ransomware in the wildCVE-2022-22954CVE-2022-22972CVE-2022-22973+1 CVEs60
Hackers Exploit IT Monitoring Tool Centreon to Target Several French EntitiesThe Hacker News·Feb 17, 05:47 UTC · Feb 17, 2021Ransomware57
Ransomware group exploits Citrix NetScaler systems for initial accessHelp Net Security·Aug 29, 00:00 UTC · Aug 29, 2023Ransomware in the wildCVE-2023-351960
Healthcare organizations in the crosshairs of cyberattackersHelp Net Security·Jul 18, 00:00 UTC · Jul 18, 2023RansomwareCVE-2021-44228CVE-2022-2296560
WARNING: Microsoft Exchange Under Attack With ProxyShell FlawsThe Hacker News·Aug 23, 13:28 UTC · Aug 23, 2021Ransomware in the wildCVE-2021-34473CVE-2021-34523CVE-2021-3120760
Black Kingdom ransomwareKaspersky Securelist·Jun 17, 09:42 UTC · Jun 17, 2021RansomwareCVE-2021-27065CVE-2019-11510CVE-2021-26855+2 CVEs60
Concerns as Ransomware and Exchange Server Attacks SurgeInfosecurity Magazine·Mar 30, 11:25 UTC · Mar 30, 2021RansomwareCVE-2021-2706560
As firms race to patch Microsoft Exchange flaws, security pros brace for ransomware outbreakCyberScoop·Mar 12, 19:28 UTC · Mar 12, 2021Ransomware in the wild60
Attackers exploit cPanel CVE-2026Security Affairs·May 12, 11:41 UTC · May 12, 2026Ransomware in the wildCVE-2026-41940160
AWS Warns Hackers Have Abused Cisco Firewall ZeroInfosecurity Magazine·Mar 19, 09:50 UTC · Mar 19, 2026RansomwareCVE-2026-2013160
Interlock group exploiting the CISCO FMC flaw CVE-2026Security Affairs·Mar 19, 09:22 UTC · Mar 19, 2026RansomwareCVE-2026-2013160
Attackers hit React defect as researchers quibble over proofCyberScoop·Dec 6, 17:14 UTC · Dec 6, 2025Ransomware in the wildCVE-2025-55182CVE-2025-6647860
Understanding Accellion’s FTA Appliance Compromise, DEWMODE, and Its Supply Chain ImpactRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025RansomwareCVE-2021-27101CVE-2021-27102CVE-2021-27103+1 CVEs60
Colt Customers Face Prolonged Outages After Major Cyber IncidentInfosecurity Magazine·Aug 18, 11:30 UTC · Aug 18, 2025RansomwareCVE-2025-5377060
Storm-2603 spotted deploying ransomware on exploited SharePoint serversHelp Net Security·Aug 4, 12:44 UTC · Aug 4, 2025Ransomware in the wildCVE-2025-53770CVE-2025-49706CVE-2025-49704+2 CVEs60
Week in review: Critical SAP NetWeaver flaw exploited, RSAC 2025 ConferenceHelp Net Security·May 4, 00:00 UTC · May 4, 2025Ransomware in the wildCVE-2025-31324CVE-2025-3928CVE-2025-42599+1 CVEs60
THN Recap: Top Cybersecurity Threats, Tools and Tips (Nov 25The Hacker News·Dec 2, 11:25 UTC · Dec 2, 2024RansomwareCVE-2024-9680CVE-2024-49039CVE-2024-11680+14 CVEs60
Pro-Russian Hacktivists Launch Branded Ransomware OperationsInfosecurity Magazine·Nov 27, 12:00 UTC · Nov 27, 2024Ransomware57
Hacktivist group Twelve is back and targets Russian entitiesSecurity Affairs·Sep 23, 05:18 UTC · Sep 23, 2024RansomwareCVE-2021-21972CVE-2021-2200560
Initial Access Brokers Target $2bn Revenue CompaniesInfosecurity Magazine·Sep 4, 10:15 UTC · Sep 4, 2024Ransomware57
Threat Assessment: Clop RansomwarePalo Alto Unit 42·Jun 6, 13:24 UTC · Jun 6, 2024RansomwareCVE-2021-27101CVE-2021-27102CVE-2021-27103+1 CVEs160
LockBit 2.0: How This RaaS Operates and How to Protect Against ItPalo Alto Unit 42·Jun 5, 20:38 UTC · Jun 5, 2024Ransomware57
Cybercriminal groups actively exploiting ‘catastrophic’ ScreenConnect bugThe Record·Feb 23, 13:03 UTC · Feb 23, 2024RansomwareCVE-2024-170960
Week in review: Microsoft fixes Follina, cybersecurity pros quitting, (IN)SECURE Magazine RSAC 2022Help Net Security·Jan 7, 10:33 UTC · Jan 7, 2024RansomwareCVE-2022-3019060
FBI and CISA published a new advisory on AvosLocker ransomwareSecurity Affairs·Oct 13, 10:55 UTC · Oct 13, 2023Ransomware57
New Ransomware Campaign Targets Citrix NetScaler FlawInfosecurity Magazine·Aug 29, 16:30 UTC · Aug 29, 2023RansomwareCVE-2023-351960
Week in review: VPNs vulnerable to TunnelCrack attacks, Cybertech Africa 2023Help Net Security·Aug 20, 00:00 UTC · Aug 20, 2023Ransomware in the wildCVE-2023-32560CVE-2023-3519CVE-2023-2448960
US govt offers $10 million bounty for info on Clop ransomware gangSecurity Affairs·Jun 18, 12:50 UTC · Jun 18, 2023RansomwareCVE-2023-3436260
Clop ransomware gang claims the hack of hundreds of victimsSecurity Affairs·Jun 7, 18:20 UTC · Jun 7, 2023RansomwareCVE-2023-34362CVE-2023-066960
MOVEit Transfer hack fallout: BBC, Aer Lingus, Boots among the victimsHelp Net Security·Jun 6, 00:00 UTC · Jun 6, 2023RansomwareCVE-2023-3436260
Experts warn of MOVEit Transfer tool exploitation using zeroThe Record·Jun 1, 17:35 UTC · Jun 1, 2023Ransomware60
Trigona Ransomware targets Microsoft SQL serversSecurity Affairs·Apr 20, 07:03 UTC · Apr 20, 2023Ransomware57