Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Ransomware

20 articles

SC Media Ransomware May 13

West Pharmaceutical Services hit by ransomware attack

The pharmaceutical packaging and delivery systems manufacturer experienced a ransomware attack on May 4, prompting the company to proactively shut down and i...

SC Media →

BleepingComputer Ransomware May 13

Foxconn confirms cyberattack claimed by Nitrogen ransomware gang

Foxconn, the world's largest electronics manufacturer, says some of its North American factories are now working to resume normal operations after a cyberatt...

BleepingComputer →

Infosecurity Magazine Ransomware May 13

Ransomware: Over Half of CISOs Would Consider Paying Ransom to Hackers

Survey of cybersecurity leaders suggests that majority would strongly consider paying cybercriminals, if that’s what it took to help restore encrypted systems

Infosecurity Magazine →

HackRead Ransomware May 13

Why Canadian Telecom Providers Are Prime Targets for Cyberattacks

Canadian telecom providers face mounting cyber threats from ransomware, SIM swapping, data breaches, and nation-state attacks targeting critical infrastructure.

HackRead →

GBHackers Ransomware May 13

Ransomware Gangs Use BYOVD and EDR Killers to Disable Security Tools

Ransomware is evolving faster than many defenses can keep up. In 2026, attackers are no longer just encrypting files they are systematically dismantling secu...

T1562

GBHackers →

The Record Ransomware May 12

West Pharmaceutical warns of ransomware attack impacting business operations

West Pharmaceutical Services filed a report with the Securities and Exchange Commission (SEC) on Monday evening warning customers that a hacker breached the ...

The Record →

SecurityWeek Ransomware May 12

West Pharmaceutical Services Hit by Disruptive Ransomware Attack

The company took systems offline globally after hackers exfiltrated data and deployed file-encrypting ransomware. The post West Pharmaceutical Services Hit b...

T1041

SecurityWeek →

Kaspersky Securelist Ransomware May 12

State of ransomware in 2026

Kaspersky researchers are sharing insights into the main ransomware trends for 2026: EDR killers on the rise, switching from data encryption to data leaks, a...

Kaspersky Securelist →

The Record Ransomware May 11

UK water company allowed hackers to lurk undetected for nearly two years, regulator finds

The Information Commissioner's Office (ICO) fined South Staffordshire Water £963,900 ($1.3 million) on Monday over an attack by the Cl0p ransomware group tha...

The Record →

GBHackers Ransomware Microsoft May 11

Windows CreateFileW API Flaw Could Let Attackers Lock SMB Files at Scale

The multi-billion-dollar ransomware defence industry operates on a fundamental assumption: to cause catastrophic operational damage, malicious actors must wr...

GBHackers →

SecurityWeek Ransomware May 8

Ransomware Group Takes Credit for Trellix Hack

RansomHouse has published several screenshots to demonstrate access to internal Trellix services. The post Ransomware Group Takes Credit for Trellix Hack app...

SecurityWeek →

The Record Ransomware Rapid7 Intel May 7

Iranian government hackers using Chaos ransomware as cover, researchers say

Incident responders from cybersecurity firm Rapid7 published a report about a recent intrusion that initially appeared to be a Chaos ransomware attack but wa...

The Record →

SC Media Ransomware May 7

Iranian threat group used Chaos ransomware as a ‘false flag,’ researchers say

The purported ransomware attack did not encrypt files and used infrastructure tied to MuddyWater.

SC Media →

HackRead Ransomware May 7

Why Outdated Maintenance Software Is a Growing Ransomware Risk

Outdated maintenance software increases ransomware risk by exposing weak access controls, unpatched systems, and critical operational data to attackers.

HackRead →

GBHackers Ransomware Microsoft Rapid7 May 7

Cybercriminals Exploit Microsoft Teams to Phish Login Credentials and Bypass MFA

Iranian state-sponsored threat actors linked to MuddyWater (Seedworm) have been caught hiding behind the Chaos ransomware brand to conduct sophisticated espi...

T1566

GBHackers →

CSO Online Ransomware Rapid7 May 6

Iranian state-backed spies pose as ransomware slingers in false flag attacks

An Iranian state-sponsored espionage group is pretending to be a regular ransomware gang in a new wave of ransomware attacks targeting enterprises. APT group...

T1204 T1588

CSO Online →

Security Affairs Ransomware Rapid7 May 6

Iranian cyber espionage disguised as a Chaos Ransomware attack

Iran-linked APT MuddyWater used ransomware-style tactics to mask espionage, combining phishing, credential theft, data exfiltration, and extortion without en...

T1566 T1078 T1041

Security Affairs →

BleepingComputer Ransomware May 6

Why ransomware attacks succeed even when backups exist

Backups don't fail because they're missing, they fail because attackers destroy them first. Acronis explains how ransomware targets backup systems before enc...

T1598

BleepingComputer →

BleepingComputer Ransomware Microsoft May 6

MuddyWater hackers use Chaos ransomware as a decoy in attacks

The MuddyWater Iranian hackers disguised their operations as a Chaos ransomware attack, relying on Microsoft Teams social engineering to gain access and esta...

T1204

BleepingComputer →

Rapid7 Blog Ransomware May 6

Muddying the Tracks: The State-Sponsored Shadow Behind Chaos Ransomware

Executive summary In early 2026, a sophisticated intrusion initially appearing to be a standard Chaos ransomware attack was assessed to be consistent with a ...

T1588

Rapid7 Blog →

«Previous page 1 2 3 4 5 6 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA