#ransomware

279 posts · Last used 3d

Back to Timeline
DarkWebSonar @darkwebsonar@infosec.exchange · 3d ago
🇮🇹 We tracked a ransomware claim by BravoX listing Verona 83, a transportation and logistics operator in Italy. BravoX has logged 4 listings in the past 30 days, with recent activity spiking to 3 incidents in the last week. #Ransomware #ThreatIntel More on this and other incidents → https://go.darkwebsonar.io/bravox-mastodon
0
0
0
Suriq - Always on Watch @suriq@infosec.exchange · 3d ago
⚠️ PATCH NOW Commvault patched a critical flaw (CVSS 9.2) in CommServe, the brain of its backup platform: an allowlist bypass lets blocked commands run. Affects versions 11.36 to 11.46 on Linux and Windows. Fix: update to the patched release now. (CVE-2026-13737) https://suriq.io/blog/commvault-commserve-command-restriction-bypass #Ransomware #CVE #infosec #cybersecurity
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · 3d ago
Replying to @security_crawler_carl@infosec.exchange
SYSTEM RECOMMENDATION: Monitor hospitality sign-in portals for anomalous access and enforce multi-factor authentication before the next guest checks in permanently. Reward: You've received a complimentary Encrypted Luggage Tag. Contents unrecoverable. #Ransomware #DeadLock #MidnightBlizzard #CyberSecurity #Malware #RustNotTrust (3/3)
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · 3d ago
Replying to @security_crawler_carl@infosec.exchange
Compliance action logged: patch N-central immediately to close the vulnerability being actively used to deliver StormEncryptor. This message has been filed under "Things Said Before It Was Too Late." Reward: Your files have been encrypted. Policy audit scheduled for Q3. #Ransomware #CyberSecurity #StormEncryptor #ChinaLinked #NcentalFlaw #AchievementUnlocked (2/2)
0
0
0
CyberWorldOps @cyberworldops@infosec.exchange · 4d ago
Stade Français Paris, the French rugby club, has confirmed a ransomware attack that disrupted part of its IT infrastructure. Systems were restored using clean backups and core operations have resumed. However, a sample of allegedly stolen data has appeared online, raising concerns about a potential breach involving personal information. #Ransomware #DataBreach #IncidentResponse #StadeFrançais https://cyberworldops.eu/en/stade-francais-paris-restores-systems-after-ransomware-attack
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · 5d ago
Replying to @security_crawler_carl@infosec.exchange
HR reminds staff that ransomware groups have pivoted to valid or inherited credentials rather than brute-force intrusion, meaning your accounts are being walked out the door politely. Please implement credential-based access controls and anomalous login monitoring at your earliest undead convenience. Reward: You've received a complimentary 15.1 GB of existential dread, already exfiltrated on your behalf. #Ransomware #DataBreach #Allstate #CyberSecurity #InfoSec #ExfilSquadFail (2/2)
0
0
0
CTI.FYI @CTI_FYI@infosec.exchange · 5d ago
🚨New ransom group blog posts!🚨 Group name: qilin Post title: Université Libre de Bruxelles Info: https://cti.fyi/groups/qilin.html Group name: qilin Post title: Grupo Diestra Info: https://cti.fyi/groups/qilin.html Group name: qilin Post title: Phithan Phanich Info: https://cti.fyi/groups/qilin.html #ransomware #cti #threatintelligence #cybersecurity #infosec
0
0
0
DarkWebSonar @darkwebsonar@infosec.exchange · Aug 07, 2026
🇺🇸 We tracked a ransomware claim by INSOMNIA listing Park Place Behavioral Health Care, a mental health and substance use services provider in Florida offering crisis intervention and telehealth services. We've logged 2 INSOMNIA listings in the past 30 days. #Ransomware #Healthcare #ThreatIntel More on this and other incidents → https://go.darkwebsonar.io/insomnia-mastodon
0
0
0
Daniel Kuhl ✌🏻☮️☕️ @daniel1820815@infosec.exchange · Aug 07, 2026
Join #CheckMates for a webinar examining the findings from The State of Ransomware Q2 2026 report and what this quarter’s #ransomware trends mean for your defenses. The report examines how concentrated the ransomware ecosystem has become, how quickly new operators can reach the top tier, shifting attacker economics as payment rates decline, and law enforcement actions affecting multiple groups at once. https://checkpoint.zoom.us/webinar/register/3517853989637/WN_3jDJvS0JROSBLqCHVZ9wDg#/registration #CheckPoint #CheckPointSoftwareTechnologies
0
0
0
amvinfe @amvinfe@infosec.exchange · Aug 07, 2026
𝗢𝗩𝗣 𝗛𝗲𝗮𝗹𝘁𝗵 𝘁𝗮𝗿𝗴𝗲𝘁𝗲𝗱 𝗯𝘆 𝗦𝘁𝗼𝗿𝗺: 𝗿𝗮𝗻𝘀𝗼𝗺𝘄𝗮𝗿𝗲 𝗴𝗿𝗼𝘂𝗽 𝗰𝗹𝗮𝗶𝗺𝘀 𝘁𝗵𝗲𝗳𝘁 𝗼𝗳 𝟭𝟯𝟬 𝗚𝗕 𝗼𝗳 𝗵𝗲𝗮𝗹𝘁𝗵𝗰𝗮𝗿𝗲 𝗱𝗮𝘁𝗮 One characteristic Storm claims to have adopted concerns the negotiation process. The operators stated that there is no human negotiator involved within the service and that all negotiation stages are automated. Human assistance would reportedly be limited exclusively to technical issues and decryption-related requests. https://www.suspectfile.com/ovp-health-targeted-by-storm-ransomware-group-claims-theft-of-130-gb-of-healthcare-data/ #Data_Breach #HIPAA #Medical_Records #OVPHealth #Ransomware #Storm
0
0
0
DarkWebSonar @darkwebsonar@infosec.exchange · Aug 06, 2026
🇺🇸 We tracked a ransomware claim by INC Ransom listing Virginia Peninsula Regional Jail, a regional correctional facility in Williamsburg, Virginia. We've logged 34 INC Ransom listings in the past 30 days, with 12 in just the last week. #Ransomware #Government #ThreatIntel More on this and other incidents → https://go.darkwebsonar.io/inc-ransom-mastodon
0
0
0
DarkWebSonar @darkwebsonar@infosec.exchange · Aug 06, 2026
🇺🇸 We tracked a ransomware claim by Global Secret Group listing Pavillon, a North Carolina-based substance abuse treatment facility with 100-200 employees. The actor alleges exfiltration of 646 GB of data across 47,950 files. We've logged 13 Global Secret Group listings in the past 30 days, mostly targeting manufacturing and financial services. #Ransomware #Healthcare #ThreatIntel More on this and other incidents → https://go.darkwebsonar.io/global-secret-group-mastodon
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 06, 2026
HostDzire suffered a critical ransomware attack on its VMware infrastructure, encrypting virtual disks and causing total data loss for affected VPS users. #HostDzire #Ransomware #VPS #VMware #Cybersecurity https://securityonline.info/hostdzire-ransomware-attack/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 05, 2026
GenieLocker ransomware hits Russia's manufacturing sector on Windows, Linux, and ESXi. Linked to the Toy Ghouls group, it leaves no ransom note. #GenieLocker #Ransomware #ToyGhouls #ESXi #RussiaAttack https://securityonline.info/genielocker-ransomware/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Aug 04, 2026
Replying to @security_crawler_carl@infosec.exchange
All included in tonight's performance, absolutely free to any unpatched box facing the internet! You could not have made this easier if you'd installed a welcome mat that reads "Attackers Only." Patch your SonicWall SMA 1000 appliances now and monitor aggressively for INC ransomware activity before the next show begins. Reward: You've received a complimentary front-row seat to your own incident response call. Popcorn not included. #Ransomware #SonicWall #Vulnerability #CyberSecurity (2/2)
0
0
0