February 23, 2023

Dole Fruit giant impacted by a ransomware attack

On Wednesday 22nd of February 2023, one of the world’s largest producers and distributors of fresh fruit and vegetables, Dole Food company announced that they have suffered a ransomware attack that disrupted their operations that have involved them being forced to shut down its production plants in North America and have halted its shipments to grocery stores. They stated in […]
February 10, 2023

A10 Networks confirms Play ransomware attack

Earlier this week, A10 Networks, a USA-based networking hardware manufacturer confirmed that the Play ransomware gang briefly gained access to its IT infrastructure and compromised data. A10 Networks stated that the incident occurred on Monday 23rd of January 2023, which lasted for a few hours before its IT team managed to stop the intrusion. Following an investigation into the incident, […]
February 10, 2023

The City of Oakland confirms systems are offline after a ransomware attack

On Wednesday 8th of February 2023, the local government of the City of Oakland was hit by a ransomware attack that resulted in them having to take all systems offline until the network is secured and affected services are brought back online. Even though they had to take all systems offline, the city has confirmed that the attack has not […]
February 2, 2023

LockBit ransomware group claim a cyber attack against ION Group

On the 31st of January 2023, ION Group, a UK-based software company that provides products to financial institutions, banks, and corporations for trading, investment management, and market analytics, disclosed that they had been targeted by a cyber attack that impacted their ION Cleared Derivatives. As a result of the attack, all the affected servers are disconnected which led to a […]
October 13, 2022

Magniber ransomware targets Windows home users as fake security updates

Recent observations of the Magniber ransomware have revealed that the recent campaign that uses Magniber ransomware has been targeting Windows home users with fake security updates. It was observed in September that the threat actors had created websites that promoted fake antivirus and security updates for Windows 10. These websites hosted malicious ZIP archives that contained JavaScript that initiated an […]
October 8, 2022

RansomHouse claim to have stolen data from ADATA, ADATA states the stolen data from 2021 breach

On Tuesday 4th of October 2022, the RansomHouse gang apparently added ADATA files to their data leak site where they claim to have stolen 1TB worth of documents in a 2022 cyberattack. However, ADATA has stated that they haven’t suffered a recent cyberattack and they also stated that the leaked files are from a May 2021 RagnarLocker ransomware attack when […]
October 5, 2022

Avast releases free ransomware decryptor for the variants of the MafiaWare666 ransomware

On Wednesday 5th of October 2022, Avast announced that they had released a free decryption tool for variants of the MafiaWare666 ransomware known as ‘Jcrypt’, ‘RIP Lmao’, and ‘BrutusptCrypt,’ allowing victims to recover their files for free. Avast stated they discovered a flaw in the encryption scheme of the MafiaWare666 strain, that allowed some of the variants to be unlocked. […]
October 4, 2022

Cheerscrypt ransomware has been linked to the Chinese hacking group, Emperor Dragonfly

On Monday 3rd of October 2022, the cyber security company, Sygnia released an article that stated that they had investigated a Cheerscrypt ransomware attack which utilized Night Sky ransomware TTPs and then on further analysis, it was revealed that Cheerscrypt and Night Sky are both rebrands of the same threat group, dubbed ‘Emperor Dragonfly’. The TTPs that were identified were […]
October 2, 2022

Vice Society Ransomware gang releases stolen data from the LAUSD school system

On Sunday 2nd of October 2022, the Vice Society Ransomware gang published data and documents that were stolen from the Los Angeles Unified School District during a ransomware attack at the start of September. The release of the stolen data was confirmed by LAUSD superintendent Alberto M. Carvalho in a statement posted to Twitter. “Unfortunately, as expected, data was recently […]