❌

Normal view

There are new articles available, click to refresh the page.
Today β€” 11 August 2026DataBreaches.Net

CISA Advisory: #StopRansomware: Gunra Ransomware

By: Dissent
10 August 2026 at 15:02
Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared in 2025 and expanded to RaaS operations in 2026. The actors leverage a double-extortion model, both encrypting data and threatening to publish exfiltrated data to a dedicated leak site (DLS) if the ransom...

Source

Yesterday β€” 10 August 2026DataBreaches.Net

Ransomware gangs skip the CEO, head straight for the 40-something IT manager

By: Dissent
9 August 2026 at 08:24
Carly Page reports: Turns out the fastest way to get a company to consider paying a ransom isn’t calling the CEO – it’s targeting the 46-year-old IT manager. That’sΒ according to Zscaler, whose ThreatLabz researchers tracked 351 victims across 334 organizations caught up in a single ransomware campaign over the course of a month. The data...

Source

Before yesterdayDataBreaches.Net

City of Coweta refuses to pay ransom after system-wide cyberattack

By: Dissent
8 August 2026 at 08:40
An update on the ransomware attack affecting the City of Coweta: the city manager has been through a ransomware attack before with another city, and reports that after they paid, they were reinfected weeks later, so Coweta will not be paying any ransom demands. Threat actors who don’t keep their word do spoil it for...

Source

City of Coweta hit with system-wide ransomware attack, has backup

By: Dissent
7 August 2026 at 16:26
KTUL in Oklahoma reports: The City of Coweta says they are currently responding to a ransomware attack. According to officials, on Werdnesday, August 5, the City experienced at system-wide attack and immediately contacted their contracted IT provider and additional cycbersecurity professionals to secure their systems to prevent any further intrusion and to begin a recovery...

Source

Cardiology Associates of Port Huron remains silent although they were allegedly hacked and had patient data stolen in June. (1)

By: Dissent
6 August 2026 at 15:29
There have been approximately 4 dozen new threat actor groups targeting U.S. medical entities in the first half of 2026. One of them calls itself β€œOrova.” They have no β€œAbout” page or information about themselves on their dark web leak site, so seeing that they had recently listed two U.S. medical entities, DataBreaches contacted them...

Source

Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison

By: Dissent
6 August 2026 at 08:11
There is an update to the case of Maksim Silnikau, who was extradited from Poland to the U.S. in August 2024 to stand trial here.Β  Ionut Arghire reports: The Belarusian creator and administrator of the Ransom Cartel ransomware was sentenced to 16 years in prison in the US. Maksim Silnikau, 40, built the ransomware operation...

Source

The double extortion of a Russian ransomware threatens the medical records that Diater has kept for 10 years.

By: Dissent
1 August 2026 at 10:30
Miguel Gomez reports: The biopharmaceutical company Diater, founded in Madrid in 1999, has appeared on the list of victims that the ransomware group DeadLock is disseminating on the dark web. The intrusion affects a company that manages particularly sensitive information of patients and healthcare professionals. The contrast lies in the type of data compromised and...

Source

Ransomware in Italy: RedACT report sheds light on an evolving threat environment

By: Dissent
31 July 2026 at 12:44
SuspectFile has published a great interview with the people behind RansomNews.online: Within this context, the first RedACT H1 2026 report,Β published byΒ ransomNews.online, represents a valuable contribution to the analysis of ransomware activity targeting Italy. The project presents itself as a new independent initiative focused on continuously monitoring the ransomware ecosystem through the collection, verification, and analysis...

Source

North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn

By: Dissent
31 July 2026 at 08:59
Alexander Martin reports: Cyberattack tools and infrastructure used by North Korea’s Lazarus Group appear to have been shared with ransomware criminals targeting South Korean organizations, according to new research released Thursday alongside aΒ joint advisoryΒ by four South Korean security and intelligence agencies. TheΒ technical reportΒ from cybersecurity firm AhnLab details how the state-sponsored North Korean group, widely tracked...

Source

Crime Stoppers International seeking tips on INC Ransom as part of new bounty program: Operation Silent Vector

By: Dissent
30 July 2026 at 10:15
Crime Stoppers International has announced a new program: Operation Silent Vector. And the first target they are offering a bounty for is INC Ransomware. Cybercriminals operate behind anonymity; this program pulls that mask off. Crime Stoppers International is seeking tips to accelerate the arrest of cybercriminals in the INC Ransomware Cybercrime-as-a-Service group as well as...

Source

HHS OCR Settles Ransomware Investigation of OSF Healthcare System and Affiliated Covered Entities

By: Dissent
30 July 2026 at 07:26
In June 2021, DataBreaches reported on a ransomware attack affecting OSF Healthcare by a little-known gang called Xing Team. Our reporting noted OSF’s lack or response to inquiries and lack of timely notification. When OSF issued a statement in October, DataBreaches reported on that, too, commenting that we did not find their incident response timely...

Source

Pay up or not? Ransomware surge has victims facing tough choices.

By: Dissent
21 July 2026 at 18:02
Hannah Murphy reports: Nearly half of companies that are targets of a ransomware cyber attack end up paying a ransom to release their data or systems, according to 2025 research from cybersecurity group Sophos, while the median amount demanded is rising. Globally, some jurisdictions are responding by banning payments to hackers. In the UK, for...

Source

FBI arrests man accused of using Steam games to drain victims’ crypto wallets

By: Dissent
17 July 2026 at 13:40
Lorenzo Franceschi-Bicchierai reports: U.S. prosecutors have accused a Florida man of uploading fake video games that contained malware to Steam, the popular PC games platform. Once victims downloaded and installed the games, the malware was designed to infect their computers, steal their passwords and other data, and drain their crypto wallets, according to a criminal...

Source

VPN service favored by ransomware groups is sanctioned by US

By: Dissent
13 July 2026 at 17:15
Suzanne Smalley reports: The U.S. government on Monday sanctioned a VPN provider and its Ukrainian administrator for abetting ransomware gangs behind attacks on American municipalities, hospitals, schools and businesses. First VPN Service (1VPNS) provided ransomware groups with tools to β€œhide their identities, disguise malicious software, and evade detection β€” enabling attacks that have caused billions...

Source

A cyberattack in March resulted in ZEGO filing for insolvency

By: Dissent
13 July 2026 at 07:49
A statement on ZEGO Textilveredelungszentrum GmbH’s website explains why they are filing for insolvency: Insolvency proceedings have been initiated – and why we are still looking ahead Ladies and gentlemen,Β  dear business partners, Today we are contacting you with a message that is very difficult for us personally. ZEGO Textilveredelungszentrum GmbH has filed for insolvency....

Source

Armenian National Extradited to the United States Pleads Guilty to Ransomware Extortion Conspiracy

By: Dissent
11 July 2026 at 09:06
PORTLAND, Ore.β€” An Armenian national extradited from Ukraine to the United States pleaded guilty yesterday for his role in Ryuk ransomware attacks and an extortion conspiracy targeting companies throughout the United States, including a technology company operating in Oregon. Karen Serobovich Vardanyan, 34, pleaded guilty to conspiracy and computer fraud. According to court documents, between...

Source

Ransomware negotiator who conspired with BlackCat threat actors sentenced to 70 months in prison

By: Dissent
11 July 2026 at 09:06
Jon Brodkin reports that a third co-conspirator who helped BlackCat attackers by giving them inside information on victims’ defense strategies has now been sentenced. A former ransomware negotiator wasΒ sentencedΒ to 70 months in prison yesterday after colluding with BlackCat scammers to extort the victims he was hired to protect. As a ransomware negotiator for theΒ company DigitalMint,...

Source

Uniondale Union Free School District – Audit Follow-Up by New York State Comptroller (2023M-61-F)

By: Dissent
8 July 2026 at 15:27
In October 2023, NYS Comptroller Thomas DiNapoli released an IT audit of the Uniondale Union Free School District on Long Island. The purpose of the audit was to examine management of non-student user network controls.Β  The audit report found, in part: District officials did not adequately manage nonstudent network user accounts and permissions. As a...

Source

UK businesses fear stigma of ransomware

By: Dissent
29 June 2026 at 08:54
Alex Scroxton reports: Fear of stigmatisation is likely leading businesses across the UK to drastically underreport data onΒ ransomware attacks, especially when they have paid a ransom to a cyber criminal gang, as admission of such is often seen as supporting further criminal activity or defying compliance regulations. Data gleaned from the nationalΒ Report FraudΒ service – which...

Source

First Circuit Affirms Dismissal of Data Breach Class Action for Lack of Traceable Injury

By: Dissent
26 June 2026 at 15:00
Melanie Conroy of Pierce Atwood LLP writes: The First Circuit recently affirmed dismissal of a putative data breach class action against BayamΓ³n Medical Center (BMC), holding that the plaintiff failed to plausibly allege that her injuries were traceable to the healthcare provider’s 2019 ransomware attack. InΒ Santos-PagΓ‘n v. BayamΓ³n Medical Center, the court concluded that allegations...

Source

❌
❌