❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayBusiness Insights Cybersecurity Blog by Bitdefender

Claimed Twice: Five Reasons the Same Ransomware Victim Shows Up Under Two Flags

Here is a ransomware trend that is becoming more frequent in 2026: The same victim organizations are posted twice, under two different flags. This is occurring frequently enough that we stopped treating it as a curiosity and went looking for the why behind this trend. We expected one answer, but we found at least five.Our team discussed this increasing trend during our Ctrl-Alt-DECODE ep. 10 livestream and in our monthly Threat Debrief, which ranks the most active ransomware groups and recent ransomware news. Now, let's take an in-depth look.

What’s New in GravityZone May 2026 (v 6.73)

Bitdefender rolled out new functionality in Bitdefender GravityZone, a unified cybersecurity platform that provides prevention, protection, detection, and response capabilities for organizations of all sizes. These features are consistent with our multi-layered security strategy and are intended to ease the workload of security analysts, administrators, and users.

Introducing Proactive Hardening and Attack Surface Reduction (PHASR) for Linux and macOS

As Linux dominates cloud-native infrastructure and macOS becomes the standard for high-value targets in development and executive leadership, the attack surface is no longer Windows-centric. Modern attack playbooks weaponize Living off the Land (LOTL) binaries–pre-installed, legitimate system tools–to blend malicious activity with normal operations and bypass standard detection telemetry.

Ransomware Attacks Against the US: 2026 Insights

Bitdefender has analyzed the movements of dozens of ransomware groups executing campaigns against organizations based in the United States. As a result ofΒ this analysis, we canΒ draw insights into patterns that emerged in early 2026. The analysis that follows expounds on key trends and developments. We also share predictions that underscore how ransomware operations and attack patterns may take shape during spring 2026.

No Encryptors, No Problem: The Coinbase Cartel Ransomware Group

The ransomware threat actor Coinbase Cartel first emerged in September 2025 and claimed 14 victims thatΒ month. The group focuses on data exfiltration, which aligns with a trend Bitdefender is tracking in the ongoing evolution of ransomware.

The Evolution of Ransomware – Key Moments

The year was 1989. There was no cloud, no cryptocurrency, and no global cybercrime economyβ€”just a malicious program quietly waiting to lock its victimΒ out of their own system.Β 

❌
❌