Ransomware Security News
Ransomware attacks, extortion group activity, victim disclosures and decryptor releases tracked as they are reported.
Ransomware encrypts — or threatens to leak — an organization's data until a ransom is paid, and has grown into an industrialized criminal ecosystem with named extortion groups, leak sites and affiliate programs. This feed follows new attack claims, victim disclosures, law-enforcement takedowns and the occasional free decryptor release. It is a fast-moving space: the same group often rebrands or splinters within months.
Recent Ransomware items
UK Cyber Attacks Jump 26% Year-on-Year as Ransomware Activity Doubles Globallyhttps://ift.tt/lbEeQni
Ransomware Hits Colombian Justice Ministry Days Before Presidential Transitionhttps://ift.tt/9eJmlut
Other topics
CVE
Recent CVE identifiers and vulnerability disclosures aggregated from security feeds — new CVE IDs, published advisories, and the vendors and products they affect.
Phishing
Phishing campaigns, credential-harvesting kits, and social-engineering techniques used to compromise users and organizations.
Zero-Day
Zero-day vulnerabilities being actively exploited before a patch exists, and the fixes that follow.
Data Breach
Confirmed and reported data breaches — what was exposed, which organizations were affected, and how the incident came to light.
Exploit
Public exploit code, proof-of-concept releases, and technical exploitation write-ups for known vulnerabilities.
Patch
Vendor patches, security updates and fix releases for previously disclosed vulnerabilities.