Articles tagged with: #ransomware Clear filter
LockBit 5.0 Actively Attacking Windows, Linux, and ESXi Environments

LockBit 5.0 Actively Attacking Windows, Linux, and ESXi Environments

Cyber Security News cybersecuritynews.com

The notorious LockBit ransomware operation has resurfaced with a vengeance after months of dormancy following Operation Cronos takedown efforts in early 2024. Despite law enforcement disruptions and infrastructure seizures, the group's administrator, LockBitSupp, has successfully rebuilt the operation and launched LockBit 5.0, internally codenamed "ChuongDong." This latest variant represents a significant evolution in the group's

Ransomware Actors Targeting Global Public Sectors and Critical Services in Targeted Attacks

Ransomware Actors Targeting Global Public Sectors and Critical Services in Targeted Attacks

Cyber Security News cybersecuritynews.com

In 2025, ransomware attacks against the public sector continue to accelerate at an alarming rate, showing no signs of slowing down despite increased cybersecurity awareness and defensive measures. Throughout the year, approximately 196 public sector entities worldwide have fallen victim to ransomware campaigns, resulting in crippling service outages, massive data loss, erosion of public trust,

AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization

AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization

Cyber Security News cybersecuritynews.com

The cybersecurity landscape has entered an unprecedented era of sophistication with the emergence of AI-powered ransomware attacks. Recent research from MIT Sloan and Safe Security reveals a shocking statistic: 80% of ransomware attacks now utilize artificial intelligence. This represents a fundamental shift from traditional malware operations to autonomous, adaptive threats that can evolve in real-time

Agenda Ransomware Actors Deploying Linux RAT on Windows Systems Targeting VMware Deployments

Agenda Ransomware Actors Deploying Linux RAT on Windows Systems Targeting VMware Deployments

Cyber Security News cybersecuritynews.com

Cybersecurity researchers have uncovered a sophisticated ransomware campaign where Agenda group threat actors are deploying Linux-based ransomware binaries directly on Windows systems, targeting VMware virtualization infrastructure and backup environments. This cross-platform execution technique challenges traditional security assumptions and demonstrates how ransomware operators are adapting to bypass endpoint detection systems that primarily focus on Windows-native threats.

Warlock Ransomware Actors Exploiting Sharepoint ToolShell Zero-Day Vulnerability in New Attack Wave

Warlock Ransomware Actors Exploiting Sharepoint ToolShell Zero-Day Vulnerability in New Attack Wave

Cyber Security News cybersecuritynews.com

The cybersecurity landscape experienced a significant shift in July 2025 when threat actors associated with Warlock ransomware began exploiting a critical zero-day vulnerability in Microsoft SharePoint. Discovered on July 19, 2025, the ToolShell vulnerability, tracked as CVE-2025-53770, became a primary vector for deploying the notorious Warlock ransomware across multiple organizations globally. This exploitation marked a

OpenText 2025 Ransomware Survey: Confidence Meets AI Threats

OpenText 2025 Ransomware Survey: Confidence Meets AI Threats

Cyber Security - AI-Tech Park ai-techpark.com

While 95% of organizations are confident in their ransomware recovery, AI-driven attacks and limited data governance are undermining that certainty OpenText(TM) (NASDAQ: OTEX) (TSX: OTEX), a global leader in secure information management for AI, today released the findings of its fourth annual Global Ransomware Survey. The survey of almost 1,800 security practitioners and...

Protecting And Managing Unstructured Data At Scale

Protecting And Managing Unstructured Data At Scale

Cybercrime Magazine cybersecurityventures.com

This week in cybersecurity from the editors at Cybercrime Magazine Sausalito, Calif. - Oct. 24, 2025 - Watch the YouTube video "We're facing what can feel like an impossible challenge: Cutting spend while unstructured data continues to grow, reducing risk from ransomware, while enabling high

The Rise of Phantom Cyber Firms: How to Spot Them and What to Verify Before You Engage

The Rise of Phantom Cyber Firms: How to Spot Them and What to Verify Before You Engage

LevelBlue Blogs levelblue.com

It's bad enough that organizations must worry about threat actors launching phishing attacks, injecting ransomware, or exploiting vulnerabilities; now, there is a new attack variant on the loose. Legal scammers. These are companies, which seem to be emerging particularly in Australia, are set up and registered as legal cybersecurity firms, but in the end just take a company's money without delivering any services. Over the last few years, I have repeatedly encountered the same playbook being...

Srsly Risky Biz: Hacking for Godot

Srsly Risky Biz: Hacking for Godot

Risky Bulletin risky.biz

Tom Uren and Amberleigh Jack talk about how America can better use its private sector to scale up offensive cyber activities, including espionage and disruption operations. Involving it to tackle ransomware and cryptocurrency scammers makes a lot of sense. They also talk about how the ransomware ecosystem is splintering, and one operator's relatively quick journey from being an affiliate to a platform operator. This episode is also available on Youtube.

ExtraHop Finds Ransomware Payouts Hit Record Highs as Attacks Evolve

ExtraHop Finds Ransomware Payouts Hit Record Highs as Attacks Evolve

Cyber Security - AI-Tech Park ai-techpark.com

Data reveals a shift from quick-hit attacks to stealthy, persistent threats that are harder to detect ExtraHop(R), a leader in modern network detection and response (NDR), today released the 2025 ExtraHop Global Threat Landscape Report, which offers a comprehensive analysis of the ever-shifting cybersecurity landscape. The report examines the ever-expanding attack...

Threat Actors Allegedly Selling Monolock Ransomware on Dark Web Forums

Threat Actors Allegedly Selling Monolock Ransomware on Dark Web Forums

Cyber Security News cybersecuritynews.com

Monolock ransomware has surfaced in underground forums, with threat actors advertising version 1.0 for sale alongside stolen corporate credentials. First detected in late September, the malware exploits phishing emails containing malicious Word documents. Upon opening, the embedded macro downloads the ransomware binary from a compromised server. Victims report file encryption using a mix of AES-256