Secure Bulletin Navigating the cyber sea with knowledge
Home > Categoria > Ransomware
Latest news

New Ransomware Brand Galago Claims Ties to the Panzer Group, but Proof Is Thin So Far

25 September 2026  |  dark6  |  Ransomware

A newly spotted ransomware operation calling itself Galago has surfaced with claimed links to the more established Panzer group, including an alleged 105GB theft from an Icelandic healthcare...

>> read more

Extradited Ryuk Ransomware Conspirator Sentenced to Federal Prison in Oregon Case

24 September 2026  |  dark6  |  Ransomware

Karen Vardanyan, an Armenian national extradited from Ukraine, has been sentenced to 24 months in federal prison and ordered to pay more than $1.2 million in restitution for...

>> read more

PAYLOAD Group Weaponizes Windows Group Policy to Take Down an Entire Domain Without Touching a Single File

22 September 2026  |  dark6  |  Ransomware

A ransomware crew calling itself PAYLOAD breached a Middle Eastern manufacturer's Windows domain and disrupted it enterprise-wide using nothing but malicious Group Policy Objects — no encryption, no...

>> read more

ENCFORGE Ransomware Targets the Models, Datasets and Vector Stores Behind AI

20 September 2026  |  dark6  |  Ransomware

The JADEPUFFER threat actor has progressed from improvised database destruction to ENCFORGE, ransomware built to encrypt AI models, datasets and vector indexes. Defenders need runtime detection and recovery...

>> read more

Feral Wolf Ransomware Exploits Confluence and Exposed 1C Systems to Breach Networks

19 September 2026  |  dark6  |  Ransomware

Feral Wolf ransomware operators are chaining known Confluence flaws, weak database credentials, and exposed 1C management services to penetrate Russian organizations. The intrusions combine custom backdoors, credential theft,...

>> read more

Attackers Are Quietly Cloning Domain Controllers’ Password Database — Then Deleting the Evidence

16 September 2026  |  dark6  |  Ransomware

Incident responders at Huntress have documented a stealthy attack pattern in which intruders use Windows' own shadow-copy tooling to clone and steal the Active Directory password database, then...

>> read more

Mantax Otax Android Ransomware Adds Screen Spying, OTP Theft and Covert Photos

12 September 2026  |  dark6  |  Ransomware

New Android malware called Mantax Otax combines file encryption with surveillance, credential theft, screen recording and covert camera access. The campaign relies on sideloaded APKs and appears focused...

>> read more

Inside ‘The Gentlemen’: The Ransomware Operation That Can Take Down a Network Before Lunch

4 September 2026  |  dark6  |  Ransomware

A ransomware-as-a-service operation dubbed 'The Gentlemen' by researchers is compromising networks and detonating encryption in as little as 24 hours, methodically disabling backups and security tooling before attackers...

>> read more