Fog’s dubious GitLab claims: investigation on instances
6 March 2025 securebulletin.com
One name that has been gaining traction since late January is Fog, a ransomware operation that has been particularly vocal...
Ransomware
Black Basta and CACTUS ransomware: shared BackConnect module signals affiliate transition
4 March 2025 securebulletin.com
Recent analysis has revealed a significant overlap in the tactics, techniques, and procedures (TTPs) employed by the Black Basta and...
Ransomware
Anubis: new ransomware threat
26 February 2025 securebulletin.com
A new player has emerged in the ransomware landscape: Anubis. This group, first observed in December 2024, is quickly making...
Ransomware
Ghost Ransomware: an analysis of tactics, targets, and techniques
23 February 2025 dark6
A joint advisory from CISA, the FBI, and the MS-ISAC sheds light on the activities of the Ghost ransomware gang,...
Ransomware
Fog ransomware: a deep dive into its tactics and targets
14 February 2025 securebulletin.com
Okay, I can do that! Here’s a short, discursive article about Fog Ransomware based on the provided document, written in...
Ransomware
Ransomware targets ESXi systems to tunnel traffic to C2 infrastructure using SSH
28 January 2025 securebulletin.com
Cybersecurity analysts have recently highlighted a concerning trend in ransomware attacks targeting ESXi systems. These attacks are not only compromising...
Ransomware
Identified a Python-based backdoor used by RansomHub affiliate to spread encryptors
20 January 2025 dark6
In a recent incident response analysis, GuidePoint Security has uncovered a sophisticated use of a Python-based backdoor by a threat...
Ransomware
Blacon High School forced to close after ‘ransomware attack’
20 January 2025 securebulletin.com
Blacon High School in Cheshire has announced a temporary closure following a significant ransomware attack that occurred on Friday, January...
Ransomware
Amazon S3 buckets targeted by new ransomware attacks
13 January 2025 securebulletin.com
A new wave of ransomware attacks has emerged, targeting Amazon Web Services (AWS) by exploiting its Server-Side Encryption with Customer...
Ransomware
HexaLocker V2: double extortion and Skuld Stealer
11 January 2025 securebulletin.com
The notorious HexaLocker ransomware has resurfaced with a revamped version, HexaLocker V2, which is now being disseminated through the Skuld...
Ransomware
Atos denies any breach of their systems, after SpaceBears ransomware claim
4 January 2025 securebulletin.com
Atos, a prominent player in the global IT services sector, has recently found itself at the center of a cybersecurity...
Ransomware
Bashe, an APT73 group
26 December 2024 securebulletin.com
Bashe, a newly emerged ransomware group formerly known as APT73 or Eraleig, has quickly made a name for itself in...