Ransomware operators jack up their ransom demands by a factor of 2.8x if they detect a victim has cyber-insurance, a study highlighted by the Netherlands government has confirmed. For his PhD thesis [PDF], defended in January, Dutch cop Tom Meurs looked at 453 ransomware attacks between 2019 and 2021. He found one of the first...Read More
Peru’s government is denying claims that its federal digital platform was taken over by a ransomware gang that has previously attacked governments around the world. The Ministry of Government and Digital Transformation published a statement on Thursday addressing a posting on the Rhysida ransomware gang’s leak site about a takeover of the government’s domain. The...Read More
NEW DELHI: In the wake of the escalating conflicts between India and Pakistan, there is an elevated risk of cyberattacks, particularly from state-sponsored advanced persistent threats known for targeting Indian government agencies, military personnel, and critical infrastructure, said the Cyber Crime Wing of the Tamil Nadu Police in a release.The advisory highlighted that the group...Read More
A sophisticated new attack method that disables endpoint security protection has been identified by security researchers, enabling threat actors to deploy ransomware undetected. The technique, dubbed “Bring Your Own Installer,” was recently discovered by Aon’s Stroz Friedberg Incident Response team during an investigation of a Babuk ransomware attack. The method exploits a vulnerability in SentinelOne’s...Read More
In light of escalating tensions following Operation Sindoor, the Cyber Crime Wing of the Tamil Nadu Police has issued a high-priority cyber alert to the public, warning of a surge in phishing links, malware-laced APK files, and fake news content being circulated under the guise of Indo-Pak conflict updates. The advisory, released on May 9,...Read More
In April 2025, the U.S. Department of Health and Human Services’ Office for Civil Rights (OCR) announced a HIPAA enforcement settlement with Comprehensive Neurology, PC, a New York-based neurology practice, in connection with a ransomware incident that compromised the electronic protected health information (“ePHI”) of approximately 6,800 individuals. This case marks OCR’s 12th ransomware-related enforcement...Read More
The Tamil Nadu Cyber Crime wing has issued an advisory warning citizens to remain vigilant against a surge in cyberattacks linked to the escalating India-Pakistan tensions. Authorities caution that state-sponsored cyber groups, known as Advanced Persistent Threats (APTs), are intensifying efforts to target Indian government agencies, military personnel, and critical infrastructure during this tense period....Read More
A spate of cyber attacks has rocked the British high street. In recent weeks, hackers have caused huge disruptions to M&S, Co-op, and Harrods by freezing critical systems. It is unlikely to be the last we hear of high-profile brands falling victim to malicious actors, particularly amid growing economic and geopolitical uncertainty. Companies will need...Read More
Key Takeaways This blog entry details research on the Agenda ransomware group’s use of SmokeLoader and a new loader, which we named NETXLOADER. The new loader poses an increased risk of sensitive data theft and device compromise to targets due to its stealthy behavior. In the first quarter of 2025, Agenda ransomware activity has been...Read More
Anti-Ransomware Day was established on May 12 in 2020 by INTERPOL in collaboration with Kaspersky to commemorate the anniversary of the infamous WannaCry ransomware attack that occurred on May 12, 2017. The purpose of Anti-Ransomware Day is to raise global awareness about the threats posed by ransomware and to promote best practices for prevention and...Read More