Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Ransomware

20 articles

The Hacker News Ransomware Microsoft Rapid7 May 6

MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack

The Iranian state-sponsored hacking group known as MuddyWater (aka Mango Sandstorm, Seedworm, and Static Kitten) has been attributed to a ransomware attack i...

T1204

The Hacker News →

SecurityWeek Ransomware May 6

Iranian APT Intrusion Masquerades as Chaos Ransomware Attack

Likely perpetrated by MuddyWater, the attack combined social engineering, persistence, credential harvesting, and data theft. The post Iranian APT Intrusion ...

T1204 T1041

SecurityWeek →

Infosecurity Magazine Ransomware Rapid7 May 6

Iran-Linked APT Posed as Chaos Ransomware Member in Espionage Campaign

Rapid7 reveals an Iranian false flag operation masquerading as a Chaos ransomware attack

Infosecurity Magazine →

Recorded Future Ransomware May 6

Threat Activity Enablers: The Backbone of Today’s Threat Landscape

Behind every ransomware demand, botnet, or threat activity group is a server sitting in a data center.

Recorded Future →

Security Affairs Ransomware May 5

U.S. court sentences Karakurt ransomware negotiator to 8.5 years

Deniss Zolotarjovs was sentenced to 8.5 years in the U.

Security Affairs →

Cyberscoop Ransomware May 5

Latvian national sentenced for ransomware attacks run by former Conti leaders

Deniss Zolotarjovs was mostly tasked with putting pressure on the Russia-based crew’s victims, in one case leaking hundreds of children’s health records. The...

Cyberscoop →

Infosecurity Magazine Ransomware May 1

Two American Cybersecurity Workers Jailed for BlackCat Ransomware Attacks

The cybersecurity workers used their knowledge and skills to conduct ransomware attacks for notorious gang, rather than protect victims against them

Infosecurity Magazine →

Schneier on Security Ransomware May 1

A Ransomware Negotiator Was Working for a Ransomware Gang

Someone pleaded guilty to secretly working for a ransomware gang as he negotiated ransomware payments for clients.

Schneier on Security →

The Hacker News Ransomware May 1

Two Cybersecurity Professionals Get 4-Year Sentences in BlackCat Ransomware Attacks

The U.S.

The Hacker News →

Cyberscoop Ransomware Apr 30

Former incident responders sentenced to 4 years in prison for committing ransomware attacks

Ryan Goldberg and Kevin Martin attacked five companies in 2023 and extorted nearly $1.3 million from one of their victims.

Cyberscoop →

Infosecurity Magazine Ransomware Apr 29

Critical Flaw Turns Vect Ransomware into Data Destroying Wiper

The Vect 2.

Infosecurity Magazine →

The Hacker News Ransomware Microsoft VMware Linux Apr 28

VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXi

Threat hunters are warning that the cybercriminal operation known as VECT 2.0 acts more like a wiper than a ransomware due to a critical flaw in its encrypti...

The Hacker News →

Check Point Research Ransomware Check Point Apr 28

VECT: Ransomware by design, Wiper by accident

Key Takeaways Background VECT Ransomware is a Ransomware-as-a-Service (RaaS) program that made its first appearance in December 2025 on a Russian-language cy...

T1588

Check Point Research →

Infosecurity Magazine Ransomware Apr 28

Ransomware Turf War as 0APT and KryBit Groups Trade Blows

Ransomware groups 0APT and KryBit have doxxed each other online

Infosecurity Magazine →

Infosecurity Magazine Ransomware Apr 22

Former Ransomware Negotiator Pleads Guilty to Working For BlackCat Cyber Gang

A former ransomware negotiator has pleaded guilty to abusing his position by working with noted cybercrime group BlackCat

Infosecurity Magazine →

Rapid7 Blog Ransomware Microsoft VMware Apr 21

Kyber Ransomware Double Trouble: Windows and ESXi Attacks Explained

Overview For executive leadership, the emergence of Kyber ransomware represents a significant and immediate threat due to its specialized, dual-platform depl...

Rapid7 Blog →

Infosecurity Magazine Ransomware Apr 21

The Gentlemen Ransomware Expands With Rapid Affiliate Growth

Gentlemen RaaS expands quickly with multi-platform attacks and SystemBC-linked infections

T1588

Infosecurity Magazine →

Check Point Research Ransomware Microsoft Linux Apr 20

DFIR Report – The Gentlemen & SystemBC: A Sneak Peek Behind the Proxy

Key Points The Gentlemen RaaS The Gentlemen ransomware‑as‑a‑service (RaaS) operation is a relatively new group that emerged around mid‑2025. The operators ad...

T1588

Check Point Research →

Infosecurity Magazine Ransomware Apr 16

Automotive Ransomware Attacks Double in a Year

Halcyon says ransomware now accounts for more than two-fifths of cyber-attacks targeting carmakers

Infosecurity Magazine →

Infosecurity Magazine Ransomware Check Point Apr 10

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month

Qilin, Akira and Dragonforce were responsible for 40% of 672 ransomware incidents reported in March, says Check Point

Infosecurity Magazine →

«Previous page 1 2 3 4 5 6 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA