Skip to main content
← All Articles

Tag

#Ransomware

159 articles

Advertisement

HIGH
Threat Intel

Germany Doxes UNKN: Identity of REvil and GandCrab Leader Revealed

German authorities identify Daniil Maksimovich Shchukin as UNKN, the lead operator behind the notorious GandCrab and REvil ransomware operations.

Runtime Rebel Intel
4 min read · Apr 6, 2026
INFO
Threat Intel

Multi-Extortion Ransomware Tactics: A Deeper Dive

Analyze the evolution of multi-extortion ransomware, its reliance on data leaks, and strategies for mitigating the impact of exfiltrated data.

Runtime Rebel Intel
4 min read · Apr 3, 2026
HIGH
Threat Intel

BRICKSTORM Malware: Hardening vSphere & VCSA Against Advanced Threats

Defend VMware vSphere and VCSA against BRICKSTORM malware. Learn hardening strategies, identity management, Zero Trust networking, and advanced logging to thwart…

Runtime Rebel Intel
9 min read · Apr 2, 2026
Ransomware Preparation: Healthcare Facilities' Defense Strategy
MEDIUM
Malware

Ransomware Preparation: Healthcare Facilities' Defense Strategy

Hospitals face inevitable ransomware attacks. Learn why proactive incident response planning, regular rehearsals, and robust technical controls are crucial for defense.

Runtime Rebel Intel
4 min read · Apr 2, 2026
Cyberattacks Target Latin American Government and Health Sectors
HIGH
Threat Intel

Cyberattacks Target Latin American Government and Health Sectors

Recent disruptive cyberattacks and ransomware probes are targeting government infrastructure and health services across Latin America and the Caribbean.

Runtime Rebel Intel
3 min read · Apr 2, 2026
HIGH
Supply Chain

TeamPCP Supply Chain Campaign: First Victim, Cloud Enumeration, Ransomware

Detailed analysis of TeamPCP supply chain campaign, covering the first confirmed victim, post-compromise cloud enumeration tactics, and dual ransomware operations.

Runtime Rebel Intel
4 min read · Apr 1, 2026

Advertisement

Bearlyfy Targets 70+ Russian Firms with Custom GenieLocker Ransomware
MEDIUM
Malware

Bearlyfy Targets 70+ Russian Firms with Custom GenieLocker Ransomware

Pro-Ukrainian group Bearlyfy deploys GenieLocker ransomware in a campaign targeting over 70 Russian organizations to cause maximum business disruption.

Runtime Rebel Intel
4 min read · Mar 27, 2026
MEDIUM
Threat Intel

Silnikau Sentenced: BitPaymer Ransomware Botnet Operator Receives 2 Years

Russian national Maksim Silnikau sentenced for managing a botnet used in BitPaymer ransomware attacks targeting 72 U.S. companies and demanding $100 million.

Runtime Rebel Intel
3 min read · Mar 25, 2026
TA551 Botnet Operator Sentenced: Analyzing Shathak Ransomware Tactics
HIGH
Threat Intel

TA551 Botnet Operator Sentenced: Analyzing Shathak Ransomware Tactics

Russian national Ilya Angelov sentenced for managing the TA551 botnet, a major facilitator of ransomware attacks via sophisticated phishing campaigns.

Runtime Rebel Intel
3 min read · Mar 25, 2026
U.S. Sentences Yanluowang Ransomware Facilitator Aleksei Volkov
HIGH
Threat Intel

U.S. Sentences Yanluowang Ransomware Facilitator Aleksei Volkov

Russian national Aleksei Volkov sentenced to 81 months for facilitating Yanluowang ransomware attacks, causing $9M in damages to U.S. organizations.

Runtime Rebel Intel
3 min read · Mar 24, 2026
HIGH
Threat Intel

M-Trends 2026: Evolving Ransomware, Persistence, and SaaS Attack Vectors

M-Trends 2026 reveals critical shifts in adversary TTPs: destructive ransomware, zero-day exploitation for persistence, and voice phishing for SaaS access.

Runtime Rebel Intel
5 min read · Mar 23, 2026
HIGH
Threat Intel

Mandiant M-Trends 2026: Handoff Time Shrinks to 22 Seconds

Mandiant's M-Trends 2026 report reveals a drastic reduction in initial access handoff times to 22 seconds, demanding faster detection and response.

Runtime Rebel Intel
3 min read · Mar 23, 2026
HIGH
Threat Intel

Iranian Handala Group Leverages Telegram for Malware Delivery and C2

FBI alerts organizations to Handala, an Iranian MOIS-linked group using Telegram APIs for data exfiltration, ransomware, and wiper attacks across sectors.

Runtime Rebel Intel
4 min read · Mar 23, 2026
Beast Gang OpSec Fail: Ransomware Server Exposes TTPs
INFO
Threat Intel

Beast Gang OpSec Fail: Ransomware Server Exposes TTPs

Beast Gang's OpSec failure exposes their cloud ransomware server, revealing aggressive tactics against network backups. Defenders gain insight into their TTPs.

Runtime Rebel Intel
4 min read · Mar 20, 2026
MEDIUM
Threat Intel

Android Security Safeguards and UK Cyber Reporting Mandates

Analysis of new Android live threat detection features, the Operation Alice takedown, and updated UK cybersecurity reporting regulations for 2024.

Runtime Rebel Intel
3 min read · Mar 20, 2026
54 EDR Killers Use BYOVD to Abuse 34 Signed Drivers
HIGH
Malware

54 EDR Killers Use BYOVD to Abuse 34 Signed Drivers

Analysis reveals 54 EDR killer programs abusing 34 signed drivers via BYOVD to neutralize security before ransomware deployment.

Runtime Rebel Intel
3 min read · Mar 19, 2026
CISA KEV Update: CVE-2025-66376 Zimbra and SharePoint Exploits
CRITICAL
Vulnerabilities

CISA KEV Update: CVE-2025-66376 Zimbra and SharePoint Exploits

CISA warns of active exploitation for Zimbra CVE-2025-66376, SharePoint flaws, and Cisco zero-days used in ransomware attacks. Secure your systems now.

Runtime Rebel Intel
4 min read · Mar 19, 2026
HIGH
Data Breach

Marquis Ransomware Attack Impacts 74 Banks and 672,000 Individuals

Marquis financial services reports a massive 2025 data breach affecting 74 US banks and 672,000 customers following a ransomware incident in August.

Runtime Rebel Intel
3 min read · Mar 18, 2026
Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges
HIGH
Threat Intel

Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges

Ransomware actors are abandoning Cobalt Strike for native Windows tools as payment rates decline, leading to a significant surge in data theft.

Runtime Rebel Intel
5 min read · Mar 18, 2026
LeakNet Ransomware: ClickFix Exploitation and Deno Loader Analysis
MEDIUM
Malware

LeakNet Ransomware: ClickFix Exploitation and Deno Loader Analysis

LeakNet ransomware leverages ClickFix social engineering and Deno-based in-memory loaders to bypass traditional security controls and deploy payloads.

Runtime Rebel Intel
4 min read · Mar 17, 2026
MEDIUM
Threat Intel

LeakNet Ransomware: Stealthy Exploitation via Deno and ClickFix

LeakNet ransomware adopts ClickFix social engineering and the Deno runtime for stealthy initial access and loader deployment in corporate environments.

Runtime Rebel Intel
4 min read · Mar 17, 2026
HIGH
Data Breach

England Hockey Investigates AiLock Ransomware Data Breach

England Hockey is investigating a potential data breach after the AiLock ransomware group claimed responsibility, impacting member data security.

Runtime Rebel Intel
4 min read · Mar 13, 2026
HIGH
Vulnerabilities

Veeam Backup & Replication RCE via CVE-2024-40711 — Mitigation Guide

Veeam patches critical RCE vulnerabilities, including CVE-2024-40711, in Backup & Replication. Discover how to secure your backup servers against exploitation.

Runtime Rebel Intel
3 min read · Mar 12, 2026
HIGH
Malware

AI-Generated Slopoly Malware Linked to Interlock Ransomware Attacks

Analysis of the AI-generated Slopoly malware and its role in Interlock ransomware operations, including technical details and detection strategies.

Runtime Rebel Intel
4 min read · Mar 12, 2026