Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEThe Hacker News·Aug 3, 16:06 UTC · Aug 3, 2026Ransomware in the wildCVE-2026-1256960
H1 2023: Ransomware's Pivot to Linux and Vulnerable DriversRecorded Future·Jun 29, 00:00 UTC · Jun 29, 2026Ransomware60
2023 Threat Analysis and 2024 PredictionsRecorded Future·Jun 26, 00:00 UTC · Jun 26, 2026RansomwareCVE-2023-2799760
Beyond the Code: Unearthing the Subtle Business Ramifications of Six Months in VulnerabilitiesRecorded Future·Jun 23, 00:00 UTC · Jun 23, 2026VulnerabilityCVE-2022-41082CVE-2023-0669CVE-2023-286860
Cl0p announces rules for extortion negotiation after MOVEit hackHelp Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Ransomware60
Progress quietly fixes MOVEit auth bypass flaws (CVE-2024-5805, CVE-2024-5806)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5805CVE-2024-580660
PoC exploit for critical Fortra FileCatalyst flaw published (CVE-2024-5276)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2024-5276CVE-2023-0669CVE-2024-2515360
SolarWinds Serv-U hit by four critical RCE-level vulnerabilitiesHelp Net Security·Jun 8, 10:28 UTC · Jun 8, 2026Vulnerability in the wildCVE-2025-40538CVE-2025-40539CVE-2025-40540+1 CVEs60
Critical MOVEit Automation auth bypass vulnerability fixed (CVE-2026-4670)Help Net Security·Jun 8, 10:28 UTC · Jun 8, 2026VulnerabilityCVE-2026-4670CVE-2026-5174CVE-2023-3436260
U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 6, 21:45 UTC · Jun 6, 2026Exploit / PoC in the wildCVE-2026-2831860
MOVEit automation flaws could enable full system compromiseSecurity Affairs·May 4, 21:32 UTC · May 4, 2026Ransomware in the wildCVE-2026-4670CVE-2026-5174CVE-2023-3436260
Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassThe Hacker News·May 4, 16:34 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4670CVE-2026-517460
OPSWAT delivers AI-powered perimeter defense with unified zero-day verdictsHelp Net Security·Apr 15, 10:12 UTC · Apr 15, 2026Exploit / PoC60
Fast-moving Storm-1175 uses new exploits to breach networks and drop MedusaSecurity Affairs·Apr 7, 13:21 UTC · Apr 7, 2026Ransomware in the wildCVE-2026-1731CVE-2023-21529CVE-2023-27351+13 CVEs60
Storm-1175 Exploits Flaws in HighInfosecurity Magazine·Apr 7, 10:02 UTC · Apr 7, 2026RansomwareCVE-2025-1003560
China-Linked Storm-1175 Exploits ZeroThe Hacker News·Apr 7, 09:42 UTC · Apr 7, 2026RansomwareCVE-2023-21529CVE-2023-27351CVE-2023-27350+13 CVEs60
All this EternalPetya stuff makes me WannaCryMalwarebytes Labs·Jan 13, 13:33 UTC · Jan 13, 2026Ransomware57
Magniber ransomware: exclusively for South KoreansMalwarebytes Labs·Jan 13, 08:15 UTC · Jan 13, 2026Ransomware57
Korean Air discloses data breach after the hack of its catering and dutySecurity Affairs·Dec 29, 23:03 UTC · Dec 29, 2025Data breachCVE-2025-61882CVE-2023-0669CVE-2023-34362160
CLOP targets Gladinet CentreStack servers in largeSecurity Affairs·Dec 19, 11:48 UTC · Dec 19, 2025Ransomware in the wildCVE-2025-11371CVE-2025-30406CVE-2025-61882+2 CVEs160
Clop Ransomware group claims the breach of The Washington PostSecurity Affairs·Nov 6, 22:10 UTC · Nov 6, 2025RansomwareCVE-2023-0669CVE-2023-3436260
Harvard University hit in Oracle EBS cyberattack, 1.3 TB of data leaked by Cl0p groupSecurity Affairs·Oct 14, 14:08 UTC · Oct 14, 2025RansomwareCVE-2025-61882CVE-2023-34362CVE-2023-066960
What makes Windows 11 interesting from a digital forensics perspectiveKaspersky Securelist·Oct 14, 08:00 UTC · Oct 14, 2025Malware130
Google, Mandiant expose malware and zeroSecurity Affairs·Oct 13, 08:35 UTC · Oct 13, 2025Malware in the wildCVE-2025-6188260
Clop Ransomware group claims the hack of Harvard UniversitySecurity Affairs·Oct 12, 15:01 UTC · Oct 12, 2025RansomwareCVE-2023-34362CVE-2023-066960
From Detection to Patch: Fortra Reveals Full Timeline of CVE-2025The Hacker News·Oct 10, 11:42 UTC · Oct 10, 2025Vulnerability in the wildCVE-2025-1003560
Security Affairs newsletter Round 544 by Pierluigi Paganini – INTERNATIONAL EDITIONSecurity Affairs·Oct 5, 11:35 UTC · Oct 5, 2025Ransomware in the wildCVE-2025-4124460
Google Mandiant Probes New Oracle Extortion Wave Possibly Linked to Cl0p RansomwareThe Hacker News·Oct 4, 10:31 UTC · Oct 4, 2025Ransomware in the wild60
CISA orders federal gov to patch critical Fortra file transfer bugThe Record·Sep 30, 17:33 UTC · Sep 30, 2025Vulnerability in the wildCVE-2025-10035CVE-2023-066960
CISA Sounds Alarm on Critical Sudo Flaw Actively Exploited in Linux and Unix SystemsThe Hacker News·Sep 30, 05:41 UTC · Sep 30, 2025Exploit / PoC in the wildCVE-2025-32463CVE-2021-21311CVE-2025-20352+2 CVEs60
Security Affairs newsletter Round 543 by Pierluigi PaganiniSecurity Affairs·Sep 28, 12:23 UTC · Sep 28, 2025RansomwareCVE-2025-53149CVE-2025-10035CVE-2025-2639960
Unpatched Fortra GoAnywhere instances at risk of full takeover (CVE-2025-10035)Help Net Security·Sep 22, 00:00 UTC · Sep 22, 2025Vulnerability in the wildCVE-2025-10035CVE-2023-0669160
Security Affairs newsletter Round 542 by Pierluigi PaganiniSecurity Affairs·Sep 21, 15:44 UTC · Sep 21, 2025RansomwareCVE-2020-9273CVE-2025-1058560
Researchers raise alarm over maximum-severity defect in GoAnywhere fileCyberScoop·Sep 19, 20:51 UTC · Sep 19, 2025Ransomware in the wildCVE-2025-10035CVE-2023-0669160
HybridPetya Mimics NotPetya, Adds UEFI CompromiseInfosecurity Magazine·Sep 15, 16:45 UTC · Sep 15, 2025RansomwareCVE-2024-734460
HybridPetya ransomware bypasses UEFI Secure Boot echoing Petya/NotPetyaSecurity Affairs·Sep 13, 12:06 UTC · Sep 13, 2025Ransomware57
HybridPetya: (Proof-of-concept?) ransomware can bypass UEFI Secure BootHelp Net Security·Sep 12, 00:00 UTC · Sep 12, 2025RansomwareCVE-2024-734460
AI gives ransomware gangs a deadly upgradeHelp Net Security·Aug 22, 00:00 UTC · Aug 22, 2025Ransomware in the wildCVE-2024-50623CVE-2024-5595660
New Wiper Malware Targets Ukrainian InfrastructureInfosecurity Magazine·Jun 9, 16:00 UTC · Jun 9, 2025Malware55
Russia-linked threat actors targets Ukraine with PathWiper wiperSecurity Affairs·Jun 6, 18:30 UTC · Jun 6, 2025Malware55