July 4, 2022

AstraLocker ransomware announces shutdown and releases decryptors

This week, the threat actor behind the lesser-known AstraLocker ransomware has reported telling the technology news outlet, BleepingComputer that they are shutting down the operation and plan to switch to cryptojacking. As well as shutting down the operation, the developer also submitted a ZIP archive which contained AstraLocker decryptors to the VirusTotal malware analysis platform. The decryptors have been confirmed […]
June 30, 2022

Macmillan Publishers’s systems were forced offline by a possible ransomware attack

On Monday 25th of June, the book publisher, Macmillan disclosed they had experienced a cyber-attack which has been believed to be a ransomware attack by experts as the publisher had initially stated that a portion of the company’s files had been encrypted and that they had taken protection measures by taking their systems offline to prevent further compromise. Employees of […]
June 29, 2022

Walmart denies claims of successful attack conducted by Yanluowang ransomware group

On Monday 27th of June 2020, the new Yanluowang ransomware operation claimed in a published entry to their data leak site that they had breached, the American retailer, Walmart and encrypted between 40,000 and 50,000 devices. Additionally, various files were uploaded with the entry which allegedly contains information extracted from Walmart’s Windows domain during the attack. “We encrypted about 40-50k Walmart […]
June 27, 2022

Sensitive health data leaked after ransomware attack against Fitzgibbon Hospital

On Saturday 25th of June 2022, information pointing to an attack on Fitzgibbon Hospital in Missouri was discovered. The group “Daixin Team” have claimed responsibility for the attack via their onion site which contained files allegedly stolen from Fitzgibbon. Based on the leaked files, the Daixin Team had claimed to have exfiltrated 40 GB of data which contained numerous files […]
May 31, 2022

Costa Rica’s public health suffers Hive ransomware attack

On Tuesday, 31st of May, the Costa Rican Social Security Fund (CCCS), Costa Rica’s public health service suffered a ransomware attack which resulted in all the computers on their network being taken offline. The impact of the incident was revealed by employees who had reported on social media that they were told to shut down their computers and unplug them […]
May 6, 2022

AGCO, US agricultural machinery maker announces they suffered a ransomware attack

On Thursday 5th of May 2022, AGCO, one of the leading US-based agricultural machinery producers suffered a ransomware attack which resulted in some of their production facilities being impacted. This incident was announced on Friday 6th of May 2022 in a press release where AGCO stated that their business operations will be affected for several days whilst they repair their […]
April 29, 2022

A Possible ransomware attack against the service provider of a popular online Library app, Onleihe led to problems

On Tuesday 26th of April 2022, Onleihe, a popular Library lending app announces they experienced problems which could have been related to their service provider, EKZ who suffered a cyber-attack on Monday 18th of April 2022. The incident led to the outage of EKZ systems which impacted the websites: ekz.de, ekz.at, ekz.fr, divibib.com, the divibib user forum, the divibib Pentaho […]
April 28, 2022

Austin Peay State University announces ransomware attack via Twitter

On Wednesday 27th of April 2022, Austin Peay State University (APSU) confirmed that they had suffered a ransomware attack via their official Twitter account. Since the initial announcement, APSU has reassured the public that the incident was in the process of being contained and that their Learning Management System, D2L had online backups. The incident hasn’t seemed to have an […]
April 26, 2022

New Black Basta ransomware gang attacks the American Dental Association

On Friday 22nd of April 2022, American Dental Association (ADA) suffered a ransomware attack that resulted in ADA having to take their affected systems offline, which disrupted various online services, telephones, email, and webchat. It has been detailed in an email sent to ADA members, that soon after the discovery of the attack, ADA immediately responded to the incident by […]