Fog ransomware: a deep dive into its tactics and targets
Okay, I can do that! Here’s a short, discursive article about Fog Ransomware based on the provided document, written in English and suitable for online publication: Fog Ransomware...
Ransomware targets ESXi systems to tunnel traffic to C2 infrastructure using SSH
Cybersecurity analysts have recently highlighted a concerning trend in ransomware attacks targeting ESXi systems. These attacks are not only compromising virtual infrastructure but also utilizing these systems as...
Identified a Python-based backdoor used by RansomHub affiliate to spread encryptors
In a recent incident response analysis, GuidePoint Security has uncovered a sophisticated use of a Python-based backdoor by a threat actor affiliated with RansomHub. This development highlights a...
Blacon High School forced to close after ‘ransomware attack’
Blacon High School in Cheshire has announced a temporary closure following a significant ransomware attack that occurred on Friday, January 17, 2025. The school will remain closed to...
Amazon S3 buckets targeted by new ransomware attacks
A new wave of ransomware attacks has emerged, targeting Amazon Web Services (AWS) by exploiting its Server-Side Encryption with Customer Provided Keys (SSE-C). This tactic allows threat actors...
HexaLocker V2: double extortion and Skuld Stealer
The notorious HexaLocker ransomware has resurfaced with a revamped version, HexaLocker V2, which is now being disseminated through the Skuld Stealer. This new iteration introduces advanced functionalities that...
Atos denies any breach of their systems, after SpaceBears ransomware claim
Atos, a prominent player in the global IT services sector, has recently found itself at the center of a cybersecurity controversy following allegations of a ransomware attack by...
Bashe, an APT73 group
Bashe, a newly emerged ransomware group formerly known as APT73 or Eraleig, has quickly made a name for itself in the cybercrime landscape since its inception in April...