Wednesday, September 16, 2026
Follow on LinkedIn

Ransomware

Authorities Arrested Admins Of “LockerGoga,” “MegaCortex,” And “Nefilim” Ransomware Gangs

The U.S. District Court for the Eastern District of New York has unsealed a superseding indictment against a Ukrainian national, charging him with his alleged role as an administrator in the LockerGoga, MegaCortex, and Nefilim ransomware operations. The schemes reportedly...

Microsoft Unveils Storm-0501’s Advanced Cloud Ransomware Attack Tactics

Microsoft Threat Intelligence has released a detailed report exposing a significant evolution in ransomware attacks, pioneered by the financially motivated threat actor Storm-0501. The group has shifted from traditional on-premises ransomware to a more destructive, cloud-native strategy that involves data...

First AI Ransomware ‘PromptLock’ Uses OpenAI gpt-oss-20b Model for Encryption

A new ransomware has been identified, which is believed to be the first-ever ransomware strain that leverages a local AI model to generate its malicious components. Dubbed "PromptLock" by the ESET Research team that discovered it, the malware uses OpenAI’s...

DragonForce Ransomware Attack Analysis – Targets, TTPs and IoCs

DragonForce represents a sophisticated and rapidly evolving ransomware operation that has emerged as a significant threat in the cybersecurity landscape since late 2023. Operating under a Ransomware-as-a-Service (RaaS) model, this group has demonstrated exceptional adaptability by leveraging leaked ransomware...

BlackSuit Ransomware’s Data Leak and Negotiation Portal Seized

A major win against cybercrime happened this week, as authorities from around the world teamed up to take down key websites run by the BlackSuit ransomware gang. If you visit the group’s data leak site or their negotiation portal now,...

UK Confirms Ban of Ransomware Payments to Public and Critical National Infrastructure Sectors

The UK government has announced comprehensive measures to tackle ransomware attacks, with public sector organizations and critical national infrastructure operators facing an outright ban on paying ransom demands to cyber criminals.  This landmark decision, supported by nearly three-quarters of consultation...

Russian Vodka Producer Beluga Hit by Ransomware Attack

Russian premium vodka producer Beluga, owned by NovaBev Group, has fallen victim to a sophisticated ransomware attack that disrupted its IT infrastructure and operational capabilities.  The cyberattack, which occurred on July 14, 2025, represents an escalation in cybercriminal activities targeting...

Authorities Dismantled “Diskstation” Ransomware Attacking Synology NAS Devices Worldwide

Italian State Police, in collaboration with French and Romanian law enforcement agencies, have successfully dismantled the dangerous "Diskstation" ransomware group that specifically targeted Synology Network-Attached Storage (NAS) devices across multiple countries.  The operation, coordinated through EUROPOL, resulted in the arrest...

GLOBAL GROUP RaaS Operators Enable AI-powered Negotiation Functionality

A sophisticated new ransomware-as-a-service operation has emerged with advanced AI-powered negotiation capabilities and mobile management features, targeting organizations across healthcare, automotive, and industrial sectors. GLOBAL GROUP, operated by threat actor "$$$", has claimed 17 victims across multiple countries since its...

BERT Ransomware Forcibly Shut Down ESXi Virtual Machines to Disrupt Recovery

New ransomware group employs advanced virtualization attack tactics to maximize damage and hinder organizational recovery efforts. A newly emerged ransomware group known as BERT has introduced a particularly disruptive capability that sets it apart from traditional ransomware operations: the ability...

Latest News

Latest News