February 27, 2022

U.S. Marshals Service reveal data theft following a ransomware attack

On Monday 27th of February 2023, the U.S. Marshals Service (USMS), a bureau within the U.S. Justice Department, revealed that they experienced a ransomware attack and had discovered data exfiltration of a stand-alone system on Friday, 17th of February 2023. The USMS has stated they are investigating the theft of sensitive law enforcement information following the ransomware attack and that […]
February 25, 2022

Cyber threat groups pick sides over Russia’s invasion of Ukraine

The week of the 21st of February 2022 has seen threat actor groups announce their support in relation to Russia’s invasion of Ukraine. The one of the first announcements were from an administrator of Raidforums which is one of the largest clearnet hacking forums who announced that the forum was blocking all Russia IPs and therefore block any users connecting […]
February 21, 2022

Data breach announced by US’s Largest cookware giant Meyer

On Tuesday 15th of February 2022, Meyer Corporation, the largest cookware distributor in the United States of America informed US Attorney General offices of a data breach because of a cyber-attack against the corporation back in October 2021. It is believed that the corporation became a target for a cyber-attack on October 25, 2021, and therefore in response, they launched […]
January 28, 2022

UK’s leading double-glazing installer Safestyle is hit by ransomware attack

On Friday 28th of January 2022, Safestyle, the UK’s leading retailer and manufacturer of PVCu replacement windows and doors announced that it has recently been the subject of a ransomware attack which resulted in part of their website and IT systems being taken offline. Although they have stated that they have remained operational, continuing to sell, survey, manufacture, install and […]
January 27, 2022

Provider for major tech companies, Delta Electronics suffer ransomware attack by Conti group

On Friday 21st of January 2022, Delta Electronics, a Taiwanese electronics company and a provider for major tech companies like Apple, Tesla, HP, and Dell, disclosed they had experienced a ransomware attack resulted in the encryption of 1,500 servers and 12,000 computers out of roughly 65,000 devices on Delta’s network. Although Delta has claimed that only non-critical systems have been […]
January 15, 2022

Russian police raids against REvil ransomware gang members results in seizure of $6.6 million

On Friday 14th of January 2022, the Federal Security Service of the Russian Federation (FSB) in cooperation with the Investigation Department of the Ministry of Internal Affairs of Russia conducted police raids at 25 addresses in the cities of Moscow, St. Petersburg, Moscow, Leningrad and Lipetsk regions, which were linked to 14 members of REvil ransomware gang.  The raids resulted […]
January 14, 2022

German defense contractor, Hensoldt confirms ransomware attack by Lorenz ransomware group

Early this week, Hensoldt, a multinational defense contractor based in Germany confirmed that it experienced a ransomware attack back in December 2021 where some of their UK subsidiary’s systems were compromised. Currently, no public announcement has been made regarding the incident but the ransomware group who are responsible for the incident is the Lorenz ransomware group who claimed responsible on […]
December 29, 2021

Vietnamese crypto platform suffers Log4j-related ransomware attack

On Tuesday 28th of December 2021, ONUS, one of the largest Vietnamese crypto trading platforms announced they suffered a ransomware attack that targeted their payment system. It was discovered that the payment system was running a vulnerable Log4j version that was exploited by threat actors between 11th and 13th of December and resulted in the threat actors installing backdoors on their Cyclos […]
December 24, 2021

Ransomware attack targets global IT services provider Inetum

On Sunday 19th of December 2021, Inetum, French IT services company with a revenue of almost $2 billion suffered a ransomware attack that affected some of their operations in France although the ransomware did not spread to larger infrastructures used by the customers. “None of the main infrastructures, communication, collaboration tools or delivery operations for Inetum clients has been affected,” – Inetum. […]