B3NCLOUD.NET
News Intel Stats Tools
CyberNews
B3N.CLOUD
Hauptseiten
Startseite
CyberNews
Quick IT-Tools
Suche
Updates
Security Tools
Breach Check
Phishing Check
IoC Extractor
SSL Check
E-Mail Header Analyzer
CVE-Suche
Cyber IntelligenceNEU
IT-Praxis
Firewall RulesNEU
Security ChecklistsNEU
Incident ResponseNEU
Regex TesterNEU
Cron BuilderNEU
Log AnalyzerNEU
Informationen
Dokumentation
Statistiken
Impressum
Datenschutz
RSS Feed
© 2026 b3ncloud.net

ARTIKEL SUCHE

Threat Feed Query

Durchsuche alle aggregierten Security-Artikel nach Schlagworten, CVE-IDs und Quellen.

944 Ergebnisse fuer ransomware Seite 4 von 48

Vect ransomware actually destructive wiper malware

<p>The authors of a new strain of ransomware called <a href="https://www.halcyon.ai/ransomware-alerts/emerging-ransomware-group-vect" target="_blank" rel="noopener">Vect</a> are drawing attention thanks to a partnership

computerweekly.com • 2026-04-28 • Ransomware Malware

Trigona ransomware adopts custom tool to steal data and evade detection

Trigona ransomware now uses a custom command-line tool to steal data faster and evade detection, replacing tools like Rclone and MegaSync. Symantec researchers report that recent Trigona ransomware attacks used a custom-

securityaffairs.com • 2026-04-26 • Ransomware

Trigona ransomware attacks use custom exfiltration tool to steal data

Recently observed Trigona ransomware attacks are using a custom, command-line tool to steal data from compromised environments faster and more efficiently. [...]

bleepingcomputer.com • 2026-04-23 • Ransomware

Kyber ransomware gang toys with post-quantum encryption on Windows

A new Kyber ransomware operation is targeting Windows systems and VMware ESXi endpoints in recent attacks, with one variant implementing Kyber1024 post-quantum encryption. [...]

bleepingcomputer.com • 2026-04-22 • Ransomware Windows

SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware Operation

Threat actors associated with The Gentlemen ransomware‑as‑a‑service (RaaS) operation have been observed attempting to deploy a known proxy malware called SystemBC. According to new research published by Check Point, the

thehackernews.com • 2026-04-21 • Ransomware Malware

Ransomware Negotiator Pleads Guilty to Aiding BlackCat Attacks in 2023

A third individual who was employed as a ransomware negotiator has pleaded guilty to conducting ransomware attacks against U.S. companies in 2023. Angelo Martino, 41, of Land O'Lakes, Florida, teamed up with the operator

thehackernews.com • 2026-04-21 • Ransomware

The Gentlemen ransomware now uses SystemBC for bot-powered attacks

A SystemBC proxy malware botnet of more than 1,570 hosts, believed to be corporate victims, has been discovered following an investigation into a Gentlemen ransomware attack carried out by a gang affiliate. [...]

bleepingcomputer.com • 2026-04-20 • Ransomware Malware

CVE-2026-5967 - TeamT5|ThreatSonar Anti-Ransomware - Privilege Escalation

CVE ID :CVE-2026-5967 Published : April 20, 2026, 7:44 a.m. | 2 hours, 13 minutes ago Description :ThreatSonar Anti-Ransomware developed by TeamT5 has an Privilege Escalation vulnerability. Authenticated remote att

cvefeed.io • 2026-04-20 • Sicherheitslücke Ransomware

CVE-2026-5966 - TeamT5|ThreatSonar Anti-Ransomware - Arbitrary File Deletion

CVE ID :CVE-2026-5966 Published : April 20, 2026, 7:40 a.m. | 17 minutes ago Description :ThreatSonar Anti-Ransomware developed by TeamT5 has an Arbitrary File Deletion vulnerability. Authenticated remote attackers

cvefeed.io • 2026-04-20 • Sicherheitslücke Ransomware

Payouts King ransomware uses QEMU VMs to bypass endpoint security

The Payouts King ransomware is using the QEMU emulator as a reverse SSH backdoor to run hidden virtual machines on compromised systems and bypass endpoint security. [...]

bleepingcomputer.com • 2026-04-17 • Ransomware

Cookeville Regional Medical Center hospital data breach impacts 337,917 people

A ransomware attack on Cookeville Regional Medical Center hospital (Tennessee) exposed data of 337,000 people after hackers stole 500GB of sensitive information from its systems. A ransomware attack on Cookeville Regiona

securityaffairs.com • 2026-04-16 • Ransomware Databreach

China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa Ransomware

A China-based threat actor known for deploying Medusa ransomware has been linked to the weaponization of a combination of zero-day and N-day vulnerabilities to orchestrate "high-velocity" attacks and break into susceptib

thehackernews.com • 2026-04-07 • Ransomware

Microsoft links Medusa ransomware affiliate to zero-day attacks

Microsoft says that Storm-1175, a China-based financially motivated cybercriminal group known for deploying Medusa ransomware payloads, has been deploying n-day and zero-day exploits in high-velocity attacks. [...]

bleepingcomputer.com • 2026-04-06 • Ransomware Windows

Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools

Threat actors associated with Qilin and Warlock ransomware operations have been observed using the bring your own vulnerable driver (BYOVD) technique to silence security tools running on compromised hosts, according to f

thehackernews.com • 2026-04-06 • Ransomware

Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrab

An elusive hacker who went by the handle "UNKN" and ran the early Russian ransomware groups GandCrab and REvil now has a name and a face. Authorities in Germany say 31-year-old Russian Daniil Maksimovich Shchukin headed

krebsonsecurity.com • 2026-04-06 • Ransomware

Qilin Ransomware Uses Malicious DLL to Kill Almost Every Vendor’s EDR Solutions

Qilin ransomware group is deploying a sophisticated, multi-stage infection chain via a malicious msimg32.dll that can disable over 300 endpoint detection and response (EDR) drivers from virtually every major security ven

cybersecuritynews.com • 2026-04-02 • Ransomware

Exposed Server Reveals TheGentlemen Ransomware Toolkit, Victim Credentials, and Ngrok Tokens

A misconfigured server hosted on a Russian bulletproof hosting provider has exposed the complete operational toolkit of a TheGentlemen ransomware affiliate, including harvested victim credentials and plaintext authentica

cybersecuritynews.com • 2026-03-30 • Ransomware

Bearlyfy Hits 70+ Russian Firms with Custom GenieLocker Ransomware

A pro-Ukrainian group called Bearlyfy has been attributed to more than 70 cyber attacks targeting Russian companies since it first surfaced in the threat landscape in January 2025, with recent attacks leveraging a custom

thehackernews.com • 2026-03-27 • Ransomware Windows

CISA Warns of Cisco Secure Firewall Management Center 0-Day Exploited in Ransomware Attacks

An urgent warning highlights a critical zero-day in Cisco products, now added to the CISA Known Exploited Vulnerabilities Catalog after active exploitation in ransomware campaigns. Network defenders and security administ

cybersecuritynews.com • 2026-03-20 • Ransomware

Interlock group exploiting the CISCO FMC flaw CVE-2026-20131 36 days before disclosure

The Interlock ransomware group has exploited a Cisco FMC zero-day RCE vulnerability in attacks since late January. The Interlock ransomware group has been exploiting a critical zero-day RCE vulnerability, tracked as CVE-

securityaffairs.com • 2026-03-19 • Sicherheitslücke Ransomware
 Zurueck 1 2 3 4 5 ... 47 48 Weiter 
B3N.CLOUD
Docs News Tools Suche Impressum Datenschutz
Status
Cookies

Diese Website verwendet ausschließlich technisch notwendige Cookies (Session, Spracheinstellung). Kein Tracking, keine Werbung. Mehr erfahren