Security news aggregator

Latest coverage for Ransomware

Stay informed on the latest trends in ransomware attacks, protection strategies, and recovery solutions with our comprehensive coverage on information security.

30 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Ransomware is a type of malicious software that encrypts a victim's files, rendering them inaccessible, and demands a ransom payment to restore access. It can spread through phishing emails, malicious adverts, or vulnerabilities in the security of computer networks. Within the realm of information security, ransomware represents a significant threat to both individuals and organizations, as it can lead to the loss of crucial data and disrupt business operations.

The complexity and sophistication of ransomware attacks have increased over time, leading to more advanced and harder-to-defend encryption tactics. Victims are often coerced into paying large sums of money in the form of cryptocurrency to regain access to their data. Information security measures against ransomware include implementing robust backup solutions, educating users on the dangers of phishing, employing updated antivirus programs, and maintaining updated software to protect against such threats.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 30 Filtered view

Interlock's post-exploit toolkit exposed Ransomware criminals exploited CVE-2026-20131, a maximum-severity bug in Cisco Secure Firewall Management Center software, as a zero-day vulnerability more than a month before Cisco patched the hole, according to Amazon security boss CJ Moses.…

Amazon Threat Intelligence is warning of an active Interlock ransomware campaign that's exploiting a recently disclosed critical security flaw in Cisco Secure Firewall Management Center (FMC) Software

Underground Telegram channels shared SmarterMail exploit PoCs and stolen admin credentials within days of disclosure. Flare explains how monitoring these communities reveals rapid weaponization of CVE-2026-24423 and CVE-2026-23760 tied to ransomware activity. [...]

Bank Info Security 10 months, 2 weeks ago

Attackers Now 'Scanning Extensively' for Citrix Bleed 2

Ransomware Group Among Attackers Focused on Exploiting Citrix Netscaler FlawSecurity experts warn that attackers have ramped up their collective attempts to find and exploit Citrix NetScaler devices that remain unpatched. Cloud Security Group patched CVE-2025-5777, a flaw also known as "Citrix Bleed 2," nearly four weeks ago with a software update.

Threat actors with links to the Play ransomware family exploited a recently patched security flaw in Microsoft Windows as a zero-day as part of an attack targeting an unnamed organization in the United States

Roses are red, violets are blue, CVE-2024-53704 is perfect for a ransomware crew Miscreants are actively abusing a high-severity authentication bypass bug in unpatched internet-facing SonicWall firewalls following the public release of proof-of-concept exploit code.…

Loading more headlines...