Tag ransomware

Hunting Unpatched Microsoft Exchange Servers: The Threat of Black Kingdom Ransomware

Following Microsoft’s recent release of a mitigation tool aimed at addressing cyberattacks targeting on-premises Exchange servers, the company reported that 92% of the internet-facing servers affected by the ProxyLogon vulnerabilities have been patched. This marks a substantial improvement of 43% from the previous week, closing a tumultuous period rife with…

Read MoreHunting Unpatched Microsoft Exchange Servers: The Threat of Black Kingdom Ransomware

Hackers Take Advantage of Unpatched VPNs to Deploy Ransomware on Industrial Systems

Security experts have raised alarms regarding a series of targeted attacks aimed at unpatched Fortinet VPN devices, impacting industrial enterprises across Europe. These assaults are believed to have facilitated the deployment of a new ransomware variant known as “Cring” within corporate infrastructures. According to a report from cybersecurity firm Kaspersky,…

Read MoreHackers Take Advantage of Unpatched VPNs to Deploy Ransomware on Industrial Systems

Ransomware Double-Dip: The Cycle of Re-Victimization in Cyber Extortion

Crossroads of Cyber Crime: The Re-Victimization Phenomenon in Ransomware Attacks In examining a dataset of over 11,000 organizations impacted by Cyber Extortion and ransomware attacks, a troubling trend emerges: many victims are notably repeated targets. This raises critical questions about the nature of these re-victimizations—are they a result of multiple…

Read MoreRansomware Double-Dip: The Cycle of Re-Victimization in Cyber Extortion

Ransomware Attack Forces Shutdown of America’s Largest Fuel Pipeline

Ransomware Attack Halts Colonial Pipeline Operations, Highlighting Cybersecurity Vulnerabilities On Saturday, Colonial Pipeline, a crucial provider transporting approximately 45% of the fuel consumed on the U.S. East Coast, officially announced it has suspended operations due to a ransomware attack. This incident underscores the susceptibility of critical infrastructure to cyber threats.…

Read MoreRansomware Attack Forces Shutdown of America’s Largest Fuel Pipeline

Synnovis Alerts UK Providers About 2024 Data Theft Incident

Data Breach Notification, Data Security, Fraud Management & Cybercrime Ransomware Attack on British Pathology Lab Disrupted Patient Care for Months Marianne Kolbasuk McGee (HealthInfoSec) • November 11, 2025 Synnovis has begun notifying UK healthcare providers about potential patient data breaches stemming from the lab’s 2024 ransomware attack. (Image: Synnovis) Following…

Read MoreSynnovis Alerts UK Providers About 2024 Data Theft Incident

U.S. Issues Emergency Declaration Across 17 States Following Fuel Pipeline Cyber Attack

In a significant cybersecurity incident, the Colonial Pipeline, a crucial fuel pipeline operator in the United States, fell victim to a ransomware attack that has led to a regional emergency declaration from the U.S. Federal Motor Carrier Safety Administration (FMCSA). This declaration affects 17 states and the District of Columbia,…

Read MoreU.S. Issues Emergency Declaration Across 17 States Following Fuel Pipeline Cyber Attack

Hackers Gained Access to Colonial Pipeline via Compromised VPN Credentials

A recent investigation has revealed that the ransomware cartel responsible for the Colonial Pipeline attack utilized a compromised virtual private network (VPN) account password to infiltrate the company’s network. This incident occurred in early May and has raised significant security concerns across the United States, particularly regarding critical infrastructure. Reports…

Read MoreHackers Gained Access to Colonial Pipeline via Compromised VPN Credentials

U.S. Recovers $2.3 Million in Ransom Paid to Colonial Pipeline Cybercriminals

In a significant development, the U.S. Department of Justice (DoJ) announced the recovery of 63.7 bitcoins, valued at approximately $2.3 million. This amount was previously paid by Colonial Pipeline to DarkSide ransomware attackers on May 8, under a seizure warrant issued by the Northern District of California. The recovery represents…

Read MoreU.S. Recovers $2.3 Million in Ransom Paid to Colonial Pipeline Cybercriminals

Malware Attack Targeting South Korean Entities Attributed to Andariel Group

A recent malware campaign has been uncovered, targeting South Korean organizations, specifically attributed to the North Korean hacking group Andariel. This development highlights the ongoing evolution of tactics employed by state-sponsored actors, particularly within the Lazarus Group, which has been consistently adapting its methodologies to enhance operational effectiveness. Kaspersky, a…

Read MoreMalware Attack Targeting South Korean Entities Attributed to Andariel Group