Skip to main content
← All Articles

Tag

#Ransomware

159 articles

Advertisement

Silver Fox Malware Campaign Impersonates Software Vendors
MEDIUM
Malware

Silver Fox Malware Campaign Impersonates Software Vendors

An active Silver Fox malware campaign uses fake software download sites to disable Windows Update and weaken Microsoft Defender defenses.

Runtime Rebel Intel
3 min read · Sep 2, 2026
AI-Assisted Cyber Attacks Accelerate Enterprise Breaches
HIGH
Threat Intel

AI-Assisted Cyber Attacks Accelerate Enterprise Breaches

Unit 42 reveals how AI agents dramatically accelerate enterprise network breaches, compressing weeks of attack activity into hours for ransomware operations.

Runtime Rebel Intel
4 min read · Sep 2, 2026
HIGH
Vulnerabilities

CVE-2026-84115: Cleo Harmony Auth Bypass Exploit Published

An exploit is published for CVE-2026-84115, an authentication bypass in Cleo Harmony allowing remote privilege escalation. Immediate patching to v5.8.1.11 is urged.

Runtime Rebel Intel
4 min read · Sep 2, 2026
Threat Actors Prefer Repeatable Playbooks Over Novel Exploits
INFO
Threat Intel

Threat Actors Prefer Repeatable Playbooks Over Novel Exploits

Analysis of modern cyberattacks reveals threat actors increasingly favour scalable, repeatable playbooks over novel exploit development.

Runtime Rebel Intel
3 min read · Sep 1, 2026
Mexico’s Cybersecurity Plan 2025-2030: Addressing Rising Threats
INFO
Threat Intel

Mexico’s Cybersecurity Plan 2025-2030: Addressing Rising Threats

Mexico's National Cybersecurity Plan 2025-2030 aims to strengthen defenses against ransomware, state-sponsored espionage, and cybercrime.

Runtime Rebel Intel
4 min read · Aug 25, 2026
State of AI-Enabled Malware: Real-World Impact and Defenses
LOW
Threat Intel

State of AI-Enabled Malware: Real-World Impact and Defenses

Unit 42 reports AI-enabled malware is primarily proof-of-concept, with minimal operational activity. Existing defenses effectively detect current threats.

Runtime Rebel Intel
5 min read · Aug 25, 2026

Advertisement

CRITICAL
Vulnerabilities

CVE-2026-21962: Oracle WebLogic RCE Under Active Attack

CISA urges immediate patching for CVE-2026-21962, a critical Oracle WebLogic Server Proxy plugin vulnerability actively exploited in the wild.

Runtime Rebel Intel
3 min read · Aug 25, 2026
SynkLoader Multitool Malware Employs Screen Hijacking
MEDIUM
Malware

SynkLoader Multitool Malware Employs Screen Hijacking

SynkLoader multitool malware leverages screen hijacking techniques and novel features for password theft, signaling potential ransomware threats.

Runtime Rebel Intel
2 min read · Aug 24, 2026
AI-Powered PLC Attacks Target Critical Infrastructure
MEDIUM
Threat Intel

AI-Powered PLC Attacks Target Critical Infrastructure

U.S. agencies warn that threat actors are using AI to target internet-exposed Siemens S7 Series PLCs in critical infrastructure sectors.

Runtime Rebel Intel
2 min read · Aug 24, 2026
HIGH
Malware

SynkLoader Malware Steals Credentials in Microsoft Teams Phishing

New SynkLoader malware distributed via Microsoft Teams phishing campaigns uses a fake lock screen to steal Windows credentials, enabling corporate network access.

Runtime Rebel Intel
4 min read · Aug 22, 2026
HIGH
Threat Intel

CISA Warns of Active Ray Exploit and Medusa Ransomware Campaign

SecurityWeek weekly briefing highlights active exploitation of Ray flaw by RondoDox botnet, Medusa ransomware, and Salt Typhoon breaches.

Runtime Rebel Intel
2 min read · Aug 21, 2026
Mitigating Large-Scale Credential Attacks and Password Spraying
HIGH
Threat Intel

Mitigating Large-Scale Credential Attacks and Password Spraying

Analysis of large-scale password spraying and credential theft campaigns targeting enterprise identity perimeters, edge devices, and cloud tenants.

Runtime Rebel Intel
2 min read · Aug 19, 2026
INFO
Vulnerabilities

AI Overwhelms Patching: Rapid7 Warns of Exposure Crisis

Rapid7 analysis reveals an AI-driven surge in vulnerabilities is overwhelming traditional patching, requiring a shift to exposure management.

Runtime Rebel Intel
4 min read · Aug 19, 2026
Ransom Busters Ransomware Affiliate Poses as Recovery Firm
MEDIUM
Threat Intel

Ransom Busters Ransomware Affiliate Poses as Recovery Firm

A ransomware affiliate masquerades as an incident recovery service to intercept victims, divert negotiations, and manipulate ransom payments.

Runtime Rebel Intel
2 min read · Aug 18, 2026
INFO
Threat Intel

Microsoft Removes WMIC Tool in Windows 11 to Curb Living-off-the-Land Tactics

Microsoft removes the legacy WMIC tool from Windows 11 builds to disrupt living-off-the-land techniques used by ransomware and malware.

Runtime Rebel Intel
2 min read · Aug 18, 2026
CRITICAL
Data Breach

Clop Ransomware Exploits CVE-2026-12569 in PTC Products

Shell investigates potential data theft by Clop gang after exploitation of critical CVE-2026-12569 in PTC Windchill and FlexPLM instances.

Runtime Rebel Intel
4 min read · Aug 16, 2026
MEDIUM
Data Breach

Data Analyst Sentenced to Prison for Extorting Brightly Software

A former data analyst contractor was sentenced to two years in prison for orchestrating a $2.5 million cryptocurrency extortion scheme against Brightly.

Runtime Rebel Intel
4 min read · Aug 14, 2026
Picus Blue Report 2026: Enterprise Edge Defenses vs Post-Compromise
INFO
Threat Intel

Picus Blue Report 2026: Enterprise Edge Defenses vs Post-Compromise

Analysis of the Picus Labs Blue Report 2026 reveals strong enterprise perimeter defenses, but severe blind spots for internal reconnaissance and credential theft.

Runtime Rebel Intel
3 min read · Aug 14, 2026
Ransomware Attack Hits Colombian Justice Ministry
MEDIUM
Threat Intel

Ransomware Attack Hits Colombian Justice Ministry

A ransomware attack targets the Colombian Justice Ministry days before a presidential transition, highlighting regional risks.

Runtime Rebel Intel
2 min read · Aug 12, 2026
Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA
HIGH
Threat Intel

Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA

Gunra ransomware targets critical infrastructure using leaked Conti code, old Fortinet vulnerabilities, and MFA bypass techniques.

Runtime Rebel Intel
2 min read · Aug 12, 2026
HIGH
Malware

Deadlock Ransomware Uses Blockchain for C2 Resilience

Deadlock ransomware uses Polygon blockchain smart contracts and Session to resist infrastructure takedown and evade law enforcement.

Runtime Rebel Intel
3 min read · Aug 12, 2026
Geopolitical AI Supply Chain Threats and Cyber Espionage
INFO
Threat Intel

Geopolitical AI Supply Chain Threats and Cyber Espionage

Examine how state-sponsored threat groups and criminal syndicates target the global AI supply chain, from rare earth minerals to silicon chips.

Runtime Rebel Intel
3 min read · Aug 11, 2026
Hackers Breach Polish CHP Plant via Private APN and Teltonika Router
MEDIUM
Threat Intel

Hackers Breach Polish CHP Plant via Private APN and Teltonika Router

Attackers breached a Polish combined heat and power plant via a private APN, shutting down a steam turbine and water treatment system.

Runtime Rebel Intel
3 min read · Aug 11, 2026
CRITICAL
Vulnerabilities

SonicWall SMA1000 Exploited: Ransomware Targets CVE-2026-15409/15410

CISA confirms ransomware exploitation of SonicWall SMA1000 flaws CVE-2026-15409 and CVE-2026-15410, urging immediate patching.

Runtime Rebel Intel
4 min read · Aug 10, 2026