Data Breach News, Malware Ransomware, News, Vulnerabilities
June 15, 2025
222 views 2 secs 0

CISA warns of SimpleHelp ransomware compromises after string of retail attacks

The Record reports: Ransomware gangs have been exploiting a vulnerability in remote device control software SimpleHelp during a recent string of attacks, according to federal cybersecurity officials.  The Cybersecurity and Infrastructure Security Agency (CISA) warned on Thursday that CVE-2024-57727 — a vulnerability affecting SimpleHelp’s widely-used remote access tools — was exploited to “compromise customers of […]

Data Breach News, Malware Ransomware
June 06, 2025
579 views 23 secs 0

Kettering Health Ransomware Attack: Interlock Ransomware Group Leaks Stolen Data

HIPAA Journal reports: Kettering Health is continuing to make progress in recovering from its May 20, 2025, ransomware attack. While its EHR has been restored, other IT systems remain offline, with disruption continuing at its Ohio medical centers and outpatient facilities. Earlier this week, Kettering Health issued an update confirming that a small subset of […]

Data Breach News, Malware Ransomware, News
June 02, 2025
613 views 47 secs 0

Victim Pays $800,000 in Bitcoin—But the Chat Was Not Private as Claimed by Akira

Ransomware gangs will swear not to reveal that you were a victim if you pay their ransom demands. SBut if they fail to secure their negotiation chat servers, researchers and intel analysts can discover who their victims are and shoulder-surf any negotiations or payment arrangements. The SuspectFile blog reports on another case like that where […]

Malware Ransomware, News
June 01, 2025
676 views 6 secs 0

DOXXED: Mysterious leaker GangExposed outs Conti kingpins in massive ransomware data dump

The Register reports that a mystery whistleblower calling himself “GangExposed” has exposed key figures behind the Conti and Trickbot ransomware crews, publishing a trove of internal files and naming names. The leaks include thousands of chat logs, personal videos, and ransom negotiations tied to some of the most notorious cyber-extortion gangs —believed to have raked […]

Legal News, Data Breach News, Malware Ransomware
May 31, 2025
637 views 53 secs 0

Australian ransomware victims now must tell the government if they pay up

The Record reports: Australia became on Friday the first country in the world to require victims of ransomware attacks to declare to the government any extortion payments made on their behalf to cybercriminals. The law, initially proposed last year, only applies to organizations with an annual turnover greater than AUS $3 million ($1.93 million) alongside a smaller […]

Data Breach News, Legal News, Malware Ransomware
May 31, 2025
660 views 58 secs 0

US medical org pays $50M+ to settle case after crims raided data and threatened to swat cancer patients

The Register reports: A Seattle cancer facility has agreed to fork out around $52.5 million as part of a class action settlement linked to a Thanksgiving 2023 cyberattack where criminals directly threatened cancer patients with swat attacks. The Fred Hutchinson Cancer Center (Fred Hutch) disclosed its November 2023 attack a month later, after it confirmed […]

Data Breach News, Malware Ransomware
May 29, 2025
228 views 20 secs 0

Canada’s federal privacy czar starts probe into theft of customer data from Nova Scotia Power

The Canadian Press reports: The federal privacy commissioner has launched an investigation into a ransomware attack that led to the theft of personal information belonging to 280,000 customers of Nova Scotia’s electric utility. Privately owned Nova Scotia Power confirmed last week that hackers stole the data and published it on the dark web. Privacy commissioner […]

Malware Ransomware, Data Breach News
May 23, 2025
658 views 6 secs 0

3AM ransomware uses spoofed IT calls, email bombing to breach networks

BleepingComputer reports: A 3AM ransomware affiliate is conducting highly targeted attacks using email bombing and spoofed IT support calls to socially engineer employees into giving credentials for remote access to corporate systems. This tactic was previously linked to the Black Basta ransomware gang and later observed in FIN7 attacks, but its effectiveness has driven a wider […]