Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > ransomware
#ransomware

RansomHub’s malicious use of TDSSKiller to bypass endpoint detection and response (EDR)

12 September 2024  |  dark6  |  Malware

Kaspersky Lab’s TDSSKiller is a widely used free utility for detecting and removing rootkits. However, a recent cyberattack campaign by the RansomHub ransomware gang has leveraged TDSSKiller to...

>> read more

Fog ransomware extends reach to financial sector

9 September 2024  |  dark6  |  Ransomware

The Fog ransomware, previously targeting educational and recreational sectors, has now shifted its focus to the lucrative finance industry. In a recent attack, threat actors compromised VPN credentials...

>> read more

Understanding the threat of RomCom’s ransomware campaign

5 September 2024  |  dark6  |  Ransomware

In recent months, the cyber threat landscape has seen a significant uptick in ransomware attacks, with the Russian group known as RomCom, or Storm-0978, emerging as a formidable...

>> read more

Regulatory action against advanced: a case study in data security breaches

8 August 2024  |  dark6  |  Databreach

In an intensive examination of data security practices, British regulators have levied a preliminary fine of £6.09 million on Advanced, a prominent service provider for the National Health...

>> read more

The evolving landscape of Proton ransomware: a focus on the Zola variant

6 August 2024  |  dark6  |  Ransomware

Since its emergence in March 2023, the Proton ransomware family has shown a remarkable capacity for evolution, with the latest variant, Zola, highlighting significant advancements in its attack...

>> read more

RansomHub ransomware: a new threat in the cybercrime landscape

31 July 2024  |  dark6  |  Ransomware

Cybersecurity researchers at Lab52 have highlighted the rise of the RansomHub ransomware gang, which employs a mix of old and new tactics to breach systems. Using tools like...

>> read more

Ongoing exploitation of VMware ESXi vulnerability CVE-2024-37085

31 July 2024  |  dark6  |  Vulnerability

A vulnerability in VMware’s ESXi virtualization platform, identified as CVE-2024-37085, continues to leave thousands of servers susceptible to ransomware attacks. Despite ongoing exploitation by cybercriminals and warnings from...

>> read more

Ransomware threats loom over Paris 2024 olympics

29 July 2024  |  dark6  |  Ransomware

A recent study by ExtraHop has highlighted the near inevitability of ransomware attacks targeting the Paris 2024 Olympics. The event’s IT infrastructure has faced frequent attacks over the...

>> read more