ransomware-as-a-service

Business

CISA warns Medusa ransomware hit 500+ organizations

Medusa ransomware has compromised over 500 organizations since June 2021, targeting critical infrastructure sectors including healthcare, defense, manufacturing, and government…

Read More »
Business

Medusa Ransomware Hits 500+ Critical Infrastructure Orgs

The FBI warns that the Medusa ransomware operation has breached over 500 organizations worldwide, many in critical infrastructure, and has…

Read More »
Business

Gunra Ransomware Targets Critical Infrastructure via Fortinet Flaws

Gunra ransomware operators are exploiting two legacy Fortinet vulnerabilities (CVE-2024-55591 and CVE-2025-24472) to breach government and critical infrastructure networks, using…

Read More »
Business

US, South Korea warn of Gunra ransomware hitting govt agencies

U.S. and South Korean agencies issued a joint advisory urging global critical infrastructure to defend against Gunra, a double-extortion ransomware…

Read More »
Business

Ransomware Gang Launches Industrialized Cyber-Attacks

A new alliance between the Vect ransomware group and the credential-theft collective TeamPCP creates an "unprecedented model of industrialized ransomware,"…

Read More »
BigTech Companies

GentleKiller Framework Bypasses Security Software

The Gentlemen ransomware group uses a proprietary EDR killer suite called GentleKiller, which employs a bring-your-own-vulnerable-driver (BYOVD) technique to terminate…

Read More »
AI & Tech

GentleKiller disables 400+ security processes across 48 products

The ransomware gang Gentlemen uniquely develops and maintains an in-house framework called GentleKiller, a suite of EDR-killer tools directly supplied…

Read More »
AI & Tech

Cybercriminals Use Microsoft Teams Relays to Hide Attacks

DragonForce ransomware group used a custom malware strain called Backdoor.Turn to hide its command-and-control traffic within Microsoft Teams relay infrastructure,…

Read More »
BigTech Companies

Critical Vect Ransomware Flaw Unlocks Data-Wiping Mode

A critical coding error in Vect 2.0 ransomware permanently destroys files larger than 128 KB instead of encrypting them, making…

Read More »
AI & Tech

Gentlemen Ransomware Grows Rapidly With New Affiliates

A new ransomware-as-a-service group called "The Gentlemen" has rapidly emerged as a major threat, claiming over 320 victims with a…

Read More »
AI & Tech

TeamPCP Ransomware Shift Raises Threat Despite Slower Attacks

TeamPCP has not retreated but has strategically paused its supply chain attacks to partner with a new ransomware-as-a-service (RaaS) operation…

Read More »
Business

Ransomware Insider Exposes ‘The Gentlemen’ Gang’s Secrets

An emerging ransomware group called The Gentlemen, operating on a ransomware-as-a-service model, was exposed by a disgruntled affiliate, revealing its…

Read More »
Business

54 EDR Killers Bypass Security Using 35 Signed Driver Flaws

A new analysis reveals 54 distinct EDR killer programs are exploiting vulnerabilities in 35 legitimate, signed drivers (BYOVD) to disable…

Read More »
Business

How a Brute Force Attack Exposed a Ransomware Network

A routine brute force attack on an exposed RDP server provided a critical entry point, revealing the operational patterns of…

Read More »
Business

AkzoNobel U.S. Site Hit by Cyberattack, Company Confirms

AkzoNobel, a major paints and coatings company, confirmed a contained cybersecurity breach at a U.S. facility, with the impact appearing…

Read More »
Business

New “Vect” RaaS Variant Poses Critical Threat, Researchers Warn

A new, highly sophisticated ransomware-as-a-service operation named **Vect** is rapidly emerging, posing a critical threat by targeting organizations and actively…

Read More »
Business

Ransomware Attacks Surge as Extortion Tactics Evolve

Ransomware data leaks surged dramatically in late 2025, with victim organizations posted to extortion sites increasing by 50% from the…

Read More »
Business

INC Ransomware Blunder Exposes Data of 12 US Organizations

An operational security lapse by the INC ransomware gang allowed forensic investigators to discover and access a persistent repository containing…

Read More »
Business

Interpol Issues Red Notice for Black Basta Ransomware Boss

Ukrainian and German authorities have identified and placed Russian national Oleg Evgenievich Nefedov, the leader of the Black Basta ransomware…

Read More »
Business

ShinyHunters Unleash ShinySp1d3r Ransomware-as-a-Service

A new ransomware-as-a-service platform called ShinySp1d3r is being developed by threat actors linked to ShinyHunters and Scattered Spider, marking a…

Read More »