Tag: ransomware
-
Hundreds of Swedish municipalities impacted by suspected ransomware attack on IT supplier
A suspected ransomware attack on a Swedish software provider is believed to have impacted around 200 of the country’s municipal governments. First seen on therecord.media Jump to article: therecord.media/sweden-municipalities-ransomware-software
-
The Era of AI-Generated Ransomware Has Arrived
Cybercriminals are increasingly using generative AI tools to fuel their attacks, with new research finding instances of AI being used to develop ransomware. First seen on wired.com Jump to article: www.wired.com/story/the-era-of-ai-generated-ransomware-has-arrived/
-
Underground Ransomware Gang Unleashes Innovative Tactics Targeting Global Organizations
The Underground ransomware gang has been coordinating recurring attacks on enterprises throughout the globe in a worrying increase in cyber risks. They have demonstrated sophisticated malware engineering that blends cutting-edge encryption techniques with focused penetration measures. First detected in July 2023, the group resurfaced in May 2024 with a revamped Dedicated Leak Site (DLS), where…
-
Ransomware activity levelled off in July, says NCC
Ransomware levels held steady in the month of July, although the risk remained as persistent as ever First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366629998/Ransomware-activity-levelled-off-in-July-says-NCC
-
Ransomware activity levelled off in July, says NCC
Ransomware levels held steady in the month of July, although the risk remained as persistent as ever First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366629998/Ransomware-activity-levelled-off-in-July-says-NCC
-
ESET warns of PromptLock, the first AI-driven ransomware
ESET found PromptLock, the first AI-driven ransomware, using OpenAI’s gpt-oss:20b via Ollama to generate and run malicious Lua scripts. In a series of messages published on X, ESET Research announced the discovery of the first known AI-powered ransomware, named PromptLock. The PromptLock malware uses the gpt-oss:20b model from OpenAI locally via the Ollama API to…
-
PromptLock: Erste KI-gesteuerte Ransomware entdeckt
Forschende des Sicherheitsunternehmens ESET haben eine ungewöhnliche Malware aufgespürt, die Künstliche Intelligenz auf neue Weise einsetzt. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/promptlock-ransomware-ki
-
When One Hospital Gets Ransomware, Others Feel the Pain
When ransomware hits hospitals, neighbors absorb patient overflow. Key defenses include backup recovery and multifactor authentication implementation. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/hospital-gets-ransomware-others-feel-pain
-
Ransomware setzt Einzelhandel massiv unter Druck
Der Einzelhandel gerät zunehmend unter Druck durch Ransomware-Angriffe. Wie aus der aktuellen Sophos-Studie “The State of Ransomware in Retail 2025” hervorgeht, zahlen mittlerweile 58 Prozent der betroffenen Einzelhandelsunternehmen Lösegeld, um ihre Daten zurückzuerlangen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/ransomware-einzelhandel
-
CVE-2025-7775: Citrix NetScaler ADC and NetScaler Gateway Zero-Day Remote Code Execution Vulnerability Exploited in the Wild
Citrix has released patches to address a zero-day remote code execution vulnerability in NetScaler ADC and NetScaler Gateway that has been exploited. Organizations are urged to patch immediately. Background On August 26, Citrix published a security advisory for three vulnerabilities, including CVE-2025-7775, a zero-day vulnerability which has been exploited against its NetScaler Application Delivery Controller…
-
First AI-powered ransomware spotted, but it’s not active yet
Oh, look, a use case for OpenAI’s gpt-oss-20b model First seen on theregister.com Jump to article: www.theregister.com/2025/08/26/first_aipowered_ransomware_spotted_by/
-
Researchers flag code that uses AI systems to carry out ransomware attacks
The malware, called PromptLock, essentially functions as a hard-coded prompt injection attack on a large language model, inspecting local filesystems, exfiltrating files and encrypting data. First seen on cyberscoop.com Jump to article: cyberscoop.com/prompt-lock-eset-ransomware-research-ai-powered-prompt-injection/
-
Data I/O Becomes Latest Ransomware Attack Victim
The incident led to outages affecting a variety of the tech company’s operations, though the full scope of the breach is unknown. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/data-io-ransomware-attack
-
Hook Android Trojan Now Delivers Ransomware-Style Attacks
New features to take over smartphones and monitor user activity demonstrate the continued evolution of the malware, which is now being spread on GitHub. First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/hook-android-trojan-ransomware-attacks
-
New Hook Android Banking Malware Emerges with Advanced Features and 107 Remote Commands
Zimperium’s zLabs research team has identified a sophisticated new variant of the Hook Android banking trojan, marking a significant escalation in mobile threat sophistication. This iteration incorporates ransomware-style overlays that display extortion messages, demanding payments via dynamically fetched wallet addresses from the command-and-control (C2) server. Activated by the >>ransome
-
New Android Trojan Variant Expands with Ransomware Tactics
A new version of the Hook Android banking Trojan features 107 remote commands, including ransomware overlays First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/android-trojan-expands-ransomware/
-
BigZulieferer meldet Ransomware-Attacke
Der Anbieter für Programmiersysteme Data I/O wurde kürzlich von einem Cyberangriff getroffen. Dabei wurden möglicherweise Daten gestohlen.Data I/O bietet Programmierlösungen für Flash-Speicher und Mikrocontroller an. Zu den Kunden zählen diverse namhafte Unternehmen, darunter etwa Bosch, Amazon, Apple, Google, HP, Microsoft, Siemens, Philips, Sony und Foxconn. Mitte August 2025 meldete der Technologieanbieter bei der US-Amerikanischen Börsenaufsicht…
-
Sophos Ransomware in Retail Studie zeigt Einzelhandel massiv unter Druck
Die Ergebnisse basieren auf einer unabhängigen Befragung von 3.400 IT- und Sicherheitsexperten in 17 Ländern in Amerika, Europa, Nahost, Afrika und Asien-Pazifik. 361 der Befragten stammen aus dem Einzelhandel. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/sophos-ransomware-in-retail-studie-zeigt-einzelhandel-massiv-unter-druck/a41790/
-
Ransomware setzt Einzelhandel massiv unter Druck
Die internationale Sophos-Studie ‘The State of Ransomware in Retail 2025″ zeigt, wie sich Ursachen, Auswirkungen und Strategien im Umgang mit Ransomware verändern und mit welchen Konsequenzen IT- und Cybersicherheitsteams im Einzelhandel zu rechnen haben. Technisch wie organisatorisch: Standardursachen für Cyberangriffe im Einzelhandel Nach den Vorgängerstudien aus den Jahren 2023 und 2024 nannten Einzelhändler ausgenutzte […]…
-
New Android Hook Malware Variant Locks Devices With Ransomware
Zimperium’s research reveals the Hook Android malware is now a hybrid threat, using ransomware and spyware to steal… First seen on hackread.com Jump to article: hackread.com/android-hook-malware-variant-locks-devices-ransomware/
-
HOOK Android Trojan Adds Ransomware Overlays, Expands to 107 Remote Commands
Cybersecurity researchers have discovered a new variant of an Android banking trojan called HOOK that features ransomware-style overlay screens to display extortion messages.”A prominent characteristic of the latest variant is its capacity to deploy a full-screen ransomware overlay, which aims to coerce the victim into remitting a ransom payment,” Zimperium zLabs researcher Vishnu Pratapagiri First…
-
Tech Manufacturer Data I/O Hit by Ransomware
Data I/O has revealed operational disruption following a ransomware breach that forced it to take some systems offline First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/tech-manufacturer-data-io-hit-by/
-
Behind the Coinbase breach: Bribery emerges as enterprise threat
Coinbase’s widely praised incident response: Coinbase’s transparency, firm stance against the ransom, quick remediation, and willingness to compensate its customers earned wide praise from cybersecurity professionals.According to Coinbase’s Martin, the hackers resorted to paying help desk workers in India precisely because the company had built such a robust security program. Bribery, according to Martin, was…
-
Das kostet ein Data Breach 2025
Tags: ai, api, breach, ciso, cyberattack, cyersecurity, data, data-breach, germany, ibm, infrastructure, intelligence, ransomware, risk, security-incident, siem, supply-chain, threat, usa, vulnerabilityLaut einer aktuellen Studie liegen die durchschnittlichen Kosten einer Datenpanne in Deutschland bei 3,87 Millionen Euro.Laut dem aktuellen ‘Cost of a Data Breach”- Report von IBM sind die Kosten einer Datenpanne in Deutschland auf 3,87 Millionen Euro (ca. 4,03 Millionen Dollar) pro Vorfall gesunken im Vorjahr lagen sie noch bei 4,9 Millionen Euro (ca. 5,31…
-
Ransomware attack volumes up nearly three times on 2024
During the first six months of 2025, the number of observed and tracked ransomware attacks far outpaced the volume seen last year. First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366629849/Ransomware-attack-volumes-up-nearly-three-times-on-2024

