Tag: extortion
-
Crypto Industry Figures Blackmailed by Revolut’s Hacker
Payments Platform Socially Engineered With Hacked Government Agency Email Account. Personally identifiable information for multiple cryptocurrency industry figures was targeted and stolen by the threat actor who hacked payments platform Revolut, prompting warnings for these customers’ personal safety, with some receiving direct extortion threats. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/crypto-industry-figures-blackmailed-by-revoluts-hacker-a-32824
-
Threat Actors Use Claude AI Agents to Automate Cyberattacks and Steal Sensitive Data
Threat actors are increasingly using Claude-based AI workflows to automate cyberattacks, accelerate data theft, and reduce the technical expertise needed to run complex intrusions. Anthropic’s report details cyber espionage, financially motivated extortion, supply-chain compromise, and hacktivist activity disrupted between December 2025 and August 2026. Rather than using an AI chatbot only for occasional coding assistance,…
-
Novo Nordisk Data Breach Tied to Stolen GitHub Access Tokens
Tags: access, breach, cloud, credentials, cyber, data, data-breach, defense, exploit, extortion, github, group, infrastructureCyber Extortion Group Continues to Target Exposed Cloud-Based Data Over Endpoints. Cyber extortion group FulcrumSec continues to find hardcoded credentials in public-facing IT infrastructure and exploit them as part of what it’s dubbed a Hardcoded Horrorshow that counts Ozempic maker Novo Nordisk among its victims. Here are defenses organizations need to put in place now.…
-
McKesson Data Leak Includes 6.4M Email Addresses After $55.2M Extortion Demand
McKesson breach data includes 6.4 million unique email addresses after ShinyHunters allegedly demanded $55.2 million to keep the records private. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/news/news-mckesson-breach-6-4-million-shinyhunters/
-
12 Best Ransomware Protection Solutions Compared (2026): Features Pricing
Quick Answer: No single product stops ransomware. The strongest stacks combine EDR prevention (CrowdStrike, SentinelOne, Microsoft Defender, Sophos, Bitdefender), managed eyes-on-glass (Huntress, Sophos MDR), and guaranteed recovery (Rubrik, Acronis). Note: ColorTokens is microsegmentation and Rubrik is cyber resilience containment and recovery layers, not EDR. Ransomware is now a professionalized industry double-extortion ransomware operations, hands-on-keyboard operators,…
-
Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data
Threat actors are leveraging Microsoft’s Graph API to identify lucrative targets, then passing their access to extortion groups like ShinyHunters. First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/voice-callers-exploit-byod-microsoft-365-corporate-data
-
ShinyHunters hackers claim breach of Florida “DAVID” DMV database
The ShinyHunters extortion gang claims it breached an online platform for the Florida Department of Motor Vehicles database known as “DAVID” and stole over 200,000 records about drivers in the state. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/shinyhunters-hackers-claim-breach-of-florida-david-dmv-database/
-
IT help-desk vishing tricks executives into handing over Microsoft 365 access
IT help-desk vishing calls, stolen session tokens, and sign-ins routed through residential proxies are behind a wave of data theft and extortion against Microsoft 365 and … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/08/vishing-microsoft-365-data-theft-extortion/
-
IT help-desk vishing tricks executives into handing over Microsoft 365 access
IT help-desk vishing calls, stolen session tokens, and sign-ins routed through residential proxies are behind a wave of data theft and extortion against Microsoft 365 and … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/08/vishing-microsoft-365-data-theft-extortion/
-
Panzer Ransomware Emerges With Windows, Linux, ESXi and FreeBSD Attack Support
A newly identified ransomware-as-a-service operation, Panzer, has surfaced with advertised payload support for Windows, Linux, VMware ESXi and FreeBSD, positioning it as a cross-platform threat to enterprise and virtualized environments. The group’s rapid victim posting cadence, affiliate-focused infrastructure, and double-extortion model make it a ransomware operation security teams should begin tracking despite the current absence…
-
Panzer Ransomware Emerges With Windows, Linux, ESXi and FreeBSD Attack Support
A newly identified ransomware-as-a-service operation, Panzer, has surfaced with advertised payload support for Windows, Linux, VMware ESXi and FreeBSD, positioning it as a cross-platform threat to enterprise and virtualized environments. The group’s rapid victim posting cadence, affiliate-focused infrastructure, and double-extortion model make it a ransomware operation security teams should begin tracking despite the current absence…
-
Berlin Responds After Data Leaked by Cyber Extortion Group
Hack and Shakedown by Cyber-Extortion Group Happened Weeks Before State Elections. Cyber-extortion group Rhysida has leaked terabytes of data, much of it sensitive, that it stole from the administration that runs the German state of Berlin, triggering political fallout and national security questions as incident responders seek to understand just what’s been stolen and leaked.…
-
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that’s targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins.The activity, which mainly singles out directors, vice presidents, and other executive staff First seen on thehackernews.com Jump to…
-
Rhysida Publishes Berlin Government Data After Euro2m Extortion Demand Refused
The ransomware group’s published dataset reportedly includes Berlin state employee data, as well as highly sensitive emergency plans First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/rhysida-berlin-data-extortion/
-
Berlin Rejects Rhysida Ransomware Blackmail
Extortion Group With Suspected Russian Provenance Imposes Friday Deadline. Berlin officials temporarily canceled remote work and are scouring all their systems, after the notorious Rhysida ransomware gang attacked the German city-state in a double-extortion attempt that will come to some kind of conclusion this Friday. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/berlin-rejects-rhysida-ransomware-blackmail-a-32731
-
Healthcare facilities operator Nutex says patient, employee data stolen in August incident
Cybercriminals breached company data and made an extortion attempt with it, Houston-based Nutex Health said in a filing with federal regulators. First seen on therecord.media Jump to article: therecord.media/nutex-health-data-breach
-
Berlin refuses to be blackmailed after network breach
Berlin’s state government has confirmed an extortion attempt following a data theft from its administrative network in August. Governing Mayor Kai Wegner and Interior … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/01/berlin-data-breach-rhysida-ransomware/
-
McKesson copes with fallout from data theft extortion attack
The major healthcare sector vendor did not identify the attackers, but ShinyHunters, a prolific group increasingly targeting the sector, claimed responsibility. First seen on cyberscoop.com Jump to article: cyberscoop.com/mckesson-data-theft-extortion-attack-shinyhunters/
-
ShinyHunters Threatens to Leak Millions of McKesson Records
Medical Products Supplier Reports Hack to SEC as Tuesday Data Leak Deadline Looms. Medical product and pharmaceutical distributor McKesson is the latest healthcare sector supplier responding to a recent data theft incident. Extortion gang ShinyHunters is threatening to leak 284 million records of sensitive McKesson data, including patient information, unless a ransom is paid. First…
-
Berlin says it won’t pay ransom after hackers steal government data
Governing Mayor Kai Wegner said on Friday that Berlin had received an extortion demand following the cyberattack, which was discovered in mid-August. First seen on therecord.media Jump to article: therecord.media/berlin-says-it-wont-pay-ransom-after-hackers-steal-gov-data
-
Berlin confirms data theft after Rhysida ransomware attack claims
Berlin’s city administration has confirmed that cybercriminals are attempting to extort the city after the Rhysida ransomware gang listed it on their data leak site. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/berlin-confirms-data-theft-after-rhysida-ransomware-attack-claims/
-
Sadistic online exploitation: five warning signs for parents and how to keep young people safe
Offenders use threats and manipulation to coerce victims to produce imagery or livestream sexually explicit acts, self-harm or animal cruelty. How can you protect your child?<ul><li><a href=”https://www.theguardian.com/society/ng-interactive/2026/aug/31/online-extortion-grooming-764-social-media-apps-ntwnfb”>The sadistic online groomers targeting victims around the world and a mother’s struggle to keep her daughter safe</li><li><a href=”https://www.theguardian.com/technology/ng-interactive/2026/jul/21/764-network-gamification-of-harm-the-com-cybercrime-ntwnfb”>Inside the horrifying online network where children coerce others to commit…
-
Extortion Group FulcrumSec Claims 86GB Manchester Airports Group Data Theft
Extortion group FulcrumSec claims they stole 86GB of Manchester Airports Group data after finding API credentials exposed in client-side JavaScript. Manchester Airports Group (MAG) disclosed a data breach on August 27 affecting customers of Manchester, London Stansted, and East Midlands airports. Two days later, BleepingComputer reports the extortion group FulcrumSec claimed responsibility, saying it stole…
-
TITAN RaaS Uses AI for Data Classification, Regulatory Analysis and Automated Ransom Calculation
A newly emerged ransomware-as-a-service operation named TITAN is advertising an AI-driven extortion platform that it claims can autonomously classify stolen corporate data, identify regulatory risk. Founded on April 4, 2026, TITAN has been active since May and has listed 24 alleged victims across 10 countries. Italy accounts for 10 published victims, followed by Czechia with…
-
Kidney Transplant Registry Hack Raises Safety Concerns
Alleged DireWolf Attack Highlights Risks to Critical Healthcare Suppliers, Patients. An alleged extortion hack on a organization that helps facilitate nationwide organ transplants is the latest reminder of the potential disruption and harm posed to healthcare organizations, patients and their sensitive data in attacks on critical medical suppliers and other third parties. First seen on…
-
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Tags: attack, cybercrime, data, extortion, group, hacker, identity, malicious, open-source, software, supply-chainAuthorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were…
-
Carhartt data breach exposes information of 12.9 million accounts
The ShinyHunters extortion group has published sensitive data from nearly 13 million accounts stolen from clothing retailer giant Carhartt earlier this month, according to data breach notification service Have I Been Pwned. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/carhartt-data-breach-exposes-information-of-129-million-accounts/
-
The GTA VI leaks are breaking the internet. Security researchers have seen this before.
A memecoin, a manifesto, and a week of daily leaks, but to researchers, it’s a familiar extortion playbook with an unusually large audience. First seen on cyberscoop.com Jump to article: cyberscoop.com/grand-theft-auto-6-data-theft-extortion-leaks/
-
Gunra ransomware: what you need to know
The ransomware gang Gunra has been creating havoc – exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. First seen on fortra.com Jump to article: www.fortra.com/blog/gunra-ransomware-what-you-need-know

