February 23, 2023

Dole Fruit giant impacted by a ransomware attack

On Wednesday 22nd of February 2023, one of the world’s largest producers and distributors of fresh fruit and vegetables, Dole Food company announced that they have suffered a ransomware attack that disrupted their operations that have involved them being forced to shut down its production plants in North America and have halted its shipments to grocery stores. They stated in […]
February 10, 2023

3.3 million patients were impacted by a data breach from a ransomware attack on Heritage Provider Network

On Friday 10th of February 2023, the Heritage Provider Network in California confirmed that multiple medical groups within the network suffered a ransomware attack which exposed the data of 3,300,638 patients. In the data breach notification on the U.S. Department of Health and Human Services breach portal, the Heritage Provider Network stated that the ransomware attack occurred on Thursday 1st […]
February 10, 2023

The City of Oakland confirms systems are offline after a ransomware attack

On Wednesday 8th of February 2023, the local government of the City of Oakland was hit by a ransomware attack that resulted in them having to take all systems offline until the network is secured and affected services are brought back online. Even though they had to take all systems offline, the city has confirmed that the attack has not […]
December 30, 2022

Ransomware attack shuts down mill of Canadian mining firm

Late on Tuesday 27th of December 2022, The Canadian Copper Mountain Mining Corporation (CMMC) in British Columbia experienced a cyberattack that resulted in the CMMC’s engineers decided to shut down the mill as a preventative measure to determine the status of its control system, while other processes switched to manual operations. “The Company’s external and internal IT teams are continuing […]
June 7, 2022

Mandiant confirms no evidence of an attack from the LockBit ransomware group

On Monday 6th of June, the LockBit ransomware gang published a new page on their data leak website that named Mandiant, a major American cybersecurity firm as the victim where they claimed to have stolen 356,841 files from Mandiant. On further investigation of the new page, there is a 0-byte file named ‘mandiantyellowpress.com.7z’ displayed on the page which appears to […]
May 6, 2022

AGCO, US agricultural machinery maker announces they suffered a ransomware attack

On Thursday 5th of May 2022, AGCO, one of the leading US-based agricultural machinery producers suffered a ransomware attack which resulted in some of their production facilities being impacted. This incident was announced on Friday 6th of May 2022 in a press release where AGCO stated that their business operations will be affected for several days whilst they repair their […]
April 18, 2022

Kaspersky add new support to their free RannohDecryptor utility which allows for the decryption of files encrypted by the Yanluowang ransomware strain

On Monday 18th of April 2022, Kaspersky, a Russian cybersecurity firm announced that they had found a vulnerability in Yanluowang ransomware’s encryption algorithm, which makes it possible to recover files it encrypts. Kaspersky has stated they’ve added support for decrypting files locked by the Yanluowang ransomware strain to their free RannohDecryptor utility.  Yanluowang ransomware strain has been observed to encrypt […]
March 14, 2022

Recent Google threat report exposes access broker linked to Conti and Diavol ransomware operations

This week, Google’s Threat Analysis Group has exposed the operations of EXOTIC LILY threat group who are believed to be an initial access broker linked to the Conti and Diavol ransomware operations. They were first spotted when they were exploiting a zero-day vulnerability in Microsoft MSHTML and then based on further investigations, it was determined that they were using large-scale […]
March 11, 2022

Bridgestone Americas confirms ransomware attack by LockBit ransomware gang

On Friday 11th of March 2022, the LockBit ransomware gang announced they had attacked Bridgestone which is the one of the largest manufacturers of tires in the world. Bridgestone had stated back on Sunday 27th of February that they were investigating a potential cyber-attack incident which has been detected in the morning of the 27th of February. But no details […]