ransomNews
@ransomnews
Decoding #ransomware groups since before Bitcoin existed. Deep threat intel for defenders who actually read the tech writeups. 🔗 ransomNews.online 💼 linkedin.com/company/ransomnews
⚠️ Japan taxi giant halts systems after cyberattack Nihon #Kotsu suspended multiple internal systems after a cyberattack disrupted operations at Japan's largest taxi operator. 🔗 read more: www.bleepingcomputer.com/news/securit... #ransomNews #cybersecurity
🚨 Grok Build sparks new privacy concerns Researchers warn Grok Build may expose sensitive code and project data, renewing concerns over AI-assisted development privacy. 🔗 read more: securityonline.info/grok-build-p... #ransomNews #cybersecurity
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #DragonForce 🧬 SITAV Società Italiana Treni Alta Velocità S.P.A. | Milano 🎯 settore: H - Trasporti 🔗 sitav.eu 🗓️ 14 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: 409.80GB ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: 21 luglio 2026
⚠️ Lidl notifies customers after online shop breach #Lidl warned online shop customers in Germany, Belgium and the Netherlands after a third-party service provider exposed personal data. 🔗 read more: securityaffairs.com/195270/data-... #ransomNews #cybersecurity
🚨 Adult content dominates Grok traffic Over half of Grok traffic reportedly involves explicit content as xAI faces scrutiny over sexualized deepfakes. 🔗 read more: www.internationalcyberdigest.com/adult-conten... #ransomNews #cybersecurity
⚠️ Telegram t.me domain placed on ServerHold The t.me domain briefly entered ServerHold status, raising concerns over Telegram link availability before normal service resumed. 🔗 read more: securityonline.info/telegram-tme... #ransomNews #cybersecurity
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #LockBit5 🧬 Sirsa S.P.A. | Palazzolo sull'Oglio (BS) 🎯 settore: C - Manifatturiero 🔗 sirsa.it 🗓️ 13 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: - ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: 28 luglio 2026 #ransomNews #cyberthreats
⚠️ Anthropic user receives $16.6M phantom charge A free-tier #Claude user reported failed Stripe charges despite zero API usage and no registered card. 🔗 read more: www.internationalcyberdigest.com/anthropic-tr... #ransomNews #cybersecurity
🔎 DOGE shuts down after sweeping federal cuts The temporary initiative ended July 4 after reshaping agencies and triggering lawsuits over access and staffing. 🔗 read more: thehill.com/homenews/adm... #ransomNews #cybersecurity
🔎 Ryuk operator pleads guilty in United States Karen Vardanyan admitted deploying #Ryuk against three US organizations and agreed to pay nearly $1.2 million. 🔗 read more: cyberscoop.com/karen-vardan... #ransomNews #cybersecurity
⚠️ Crafted emails can hijack Zimbra sessions A critical stored XSS flaw can expose mailbox data and session details when a malicious email is opened. 🔗 read more: thehackernews.com/2026/07/crit... #ransomNews #cybersecurity
⚠️ Goddamn ransomware disables EDR defenses The #malware abuses a vulnerable kernel driver to terminate endpoint security processes before encryption. 🔗 read more: latesthackingnews.com/2026/07/10/e... #ransomNews #cybersecurity
⚠️ Ghostcommit weaponizes images against AI agents Hidden prompts can make coding agents expose secrets. 🔗 read more: www.bleepingcomputer.com/news/securit... #ransomNews #cybersecurity
⚠️ Visual Studio projects deploy Windows backdoors Malicious pre-build events in C++ and C# projects can install credential-stealing #malware through trusted developer workflows. 🔗 read more: gbhackers.com/c-c-project-... #ransomNews
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #Qlin 🧬 Retelit S.P.A. | Milano 🎯 settore: K - Telecom/IT 🔗 retelit.it 🗓️ 11 luglio 2026 📄 sample: sì ▪️ dati esfiltrati dichiarati: - ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: - #ransomNews #cyberthreats #cybersecurity
⚠️ Healthcare vendors see cyberattacks more than double Cyberattacks against #healthcare vendors surged 110% in the first half of 2026, making third-party providers an increasingly attractive gateway into hospitals and broader healthcare networks. 🔗 read more: www.darkreading.com/threat-intel...
⚠️ AI hallucinations redirect users into attacker-owned domains Researchers generated 250.000 nonexistent domains from 685.339 #AI queries, while attackers registered some within 18 to 51 days for #phishing. 🔗 read more: www.darkreading.com/endpoint-sec... #ransomNews #cybersecurity
🚨 Microsoft 365 accounts breached through forgotten MFA gaps Attackers made 81M login attempts in 14 days, compromising 78 accounts across 64 organizations through an ROPC flow excluded from MFA policies. 🔗 read more: www.bleepingcomputer.com/news/securit... #ransomNews #cybersecurity
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #TheGentlemen 🧬 Vicenzi S.P.A. | San Giovanni Lupatoto (VR) 🎯 settore: C - Manifatturiero 🔗 vicenzi.it 🗓️ 10 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: - ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: 20 luglio 2026
⚠️ New threat actor on the radar ⚠️ 🥷🏻 CRPxO 🗓️ added on July 09, 2026 #ransomNews #cybersecurity #newthreatactor
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #SpaceBears 🧬 BiesSse Tape Solutions S.P.A. | Sedriano (MI) 🎯 settore: C - Manifatturiero 🔗 biessseworld.com 🗓️ 08 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: - ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: 14 luglio 2026
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #AILock 🧬 Studio Sardano Rag. Vincenzo | Riccione 🎯 settore: N - Servizi professionali 🔗 studiosardano-riccione.com 🗓️ 08 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: - ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: - #ransomNews
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #Safepay 🧬 Matrix Consulting Group S.R.L. | Nola (NA) 🎯 settore: N - Servizi professionali 🔗 matrixdigitalfactory.com 🗓️ 08 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: - ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: 10 luglio 2026
🚨 nuova rivendicazione #ransomware Italia 🚨 🏴☠️ gruppo #PayoutsKing 🧬 C****P | - 🎯 settore: - 🔗 c****.com 🗓️ 08 luglio 2026 📄 sample: - ▪️ dati esfiltrati dichiarati: 2.00TB ▪️ dati esfiltrati pubblicati: - ⏲️ scadenza: 13 luglio 2026 #ransomNews #cyberthreats #cybersecurity
⚠️ Apple Hide My Email can reveal real addresses Researchers found a flaw allowing websites to expose users' actual email addresses under specific conditions, undermining Hide My Email privacy protections. 🔗 read more: www.macrumors.com/2026/07/01/h... #ransomNews #cybersecurity
🔎 Alibaba reportedly removes Claude Code from platform #Alibaba is reportedly blocking Claude Code services, highlighting the growing regulatory and competitive pressure surrounding AI development tools. 🔗 read more: gbhackers.com/alibaba-repo... #ransomNews #cybersecurity
⚠️ AI hallucinations create a new supply chain attack Phantom packages invented by LLMs are being registered by attackers, allowing developers to install malicious dependencies copied directly from AI-generated code. 🔗 read more: www.darkreading.com/endpoint-sec... #ransomNews #cybersecurity
🔎 Opera adds native protection against ClickFix scams #Opera now detects and blocks #ClickFix style social engineering pages before users can execute the malicious commands they display. 🔗 read more: lifehacker.com/tech/opera-r... #ransomNews #cybersecurity
⚠️ Medtronic breach exposes data of 3.8 million patients A third-party compromise affected personal information belonging to approximately 3.8 million people connected to #Medtronic healthcare services. 🔗 read more: www.securityweek.com/medtronic-da... #ransomNews #cybersecurity
⚠️ Fake Google verification pages deliver malware instead Attackers impersonate Google and #Cloudflare verification screens to trick users into executing malicious PowerShell commands that install #malware. 🔗 read more: gbhackers.com/fake-google-... #ransomNews #cybersecurity