Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

Categorie: ransomware

WantToCry Ransomware Exploits SMB Vulnerabilities to Remotely Encrypts NAS Drives 

post, februari 1, 2025februari 24, 2025

The notorious WantToCry ransomware group leverages misconfigured Server Message Block (SMB) services to infiltrate networks and launch widespread attacks. The weaknesses in SMBs, such as weak credentials, outdated software, and poor security configurations, are providing attackers with an easy entry point through which attackers exploit publicly exposed network drives and…

Continue Reading

Indian tech giant Tata Technologies hit by ransomware attack

post, januari 31, 2025februari 3, 2025

Tata Technologies Ltd. had to suspend some of its IT services following a ransomware attack that impacted the company network. A subsidiary of Tata Motors, Tata Technologies is an Indian public multinational tech firm that focuses on automotive design, aerospace engineering, and R&D engineering in general.

Continue Reading

Ransomware attack hits leading heart surgery device maker

post, december 9, 2024december 11, 2024

Artivion, a leading manufacturer of heart surgery medical devices, has disclosed a November 21 ransomware attack that disrupted its operations and forced it to take some systems offline. The Atlanta-based company employs over 1,250 people worldwide and has sales representatives in more than 100 countries. It also operates manufacturing facilities…

Continue Reading

Wanted Russian Hacker Linked to Hive and LockBit Ransomware Arrested

post, november 30, 2024december 2, 2024

A Russian cybercriminal wanted in the U.S. in connection with LockBit and Hive ransomware operations has been arrested by law enforcement authorities in the country. According to a news report from Russian media outlet RIA Novosti, Mikhail Pavlovich Matveev has been accused of developing a malicious program designed to encrypt files and…

Continue Reading

North Korean IT Workers in Western Firms Now Demanding Ransom for Stolen Data

post, oktober 18, 2024

North Korean information technology (IT) workers who obtain employment under false identities in Western companies are not only stealing intellectual property, but are also stepping up by demanding ransoms in order to not leak it, marking a new twist to their financially motivated attacks. “In some instances, fraudulent workers demanded…

Continue Reading

Planned Parenthood confirms cyberattack as RansomHub claims breach

post, september 5, 2024

Planned Parenthood has confirmed it suffered a cyberattack affecting its IT systems, forcing it to take parts of its infrastructure offline to contain the damage. Planned Parenthood is a New York-based nonprofit organization that provides a range of reproductive health care services, education, and advocacy for birth control. It is…

Continue Reading

RansomHub Ransomware Group Targets 210 Victims Across Critical Sectors

post, september 2, 2024september 3, 2024

Threat actors linked to the RansomHub ransomware group encrypted and exfiltrated data from at least 210 victims since its inception in February 2024, the U.S. government said. The victims span various sectors, including water and wastewater, information technology, government services and facilities, healthcare and public health, emergency services, food and agriculture, financial…

Continue Reading

Cybercriminals Exploit CrowdStrike Update Mishap to Distribute Remcos RAT Malware

post, juli 20, 2024juli 22, 2024

Cybersecurity firm CrowdStrike, which is facing the heat for causing worldwide IT disruptions by pushing out a flawed update to Windows devices, is now warning that threat actors are exploiting the situation to distribute Remcos RAT to its customers in Latin America under the guise of providing a hotfix. The attack chains…

Continue Reading

Ransomware scum who hit Indonesian government apologizes, hands over encryption key

post, juli 4, 2024juli 5, 2024

Brain Cipher, the group responsible for hacking into Indonesia’s Temporary National Data Center (PDNS) and disrupting the country’s services, has seemingly apologized for its actions and released an encryption key to the government. That key was in the form of an 54 kb ESXi file. Its efficacy has not yet…

Continue Reading

Hackers of Indonesian government apologize and give key

post, juli 3, 2024juli 5, 2024

Attackers clear logs before exploitation and use “no caller ID” numbers to negotiate ransoms, complicating detection and forensics efforts. A double-extortion ransomware player has exploded onto the scene with several attacks in two weeks, wielding innovative locker malware and a slew of evasion tactics for covering its tracks and making it difficult…

Continue Reading
  • Previous
  • 1
  • …
  • 3
  • 4
  • 5
  • 6
  • Next

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes