Threat actors stories - Page 6
Curly COMrades abuse Hyper-V for covert malware operations in VMs
Wed, 5th Nov 2025
#
malware
#
virtualisation
#
firewalls
Curly COMrades exploit Microsoft Hyper-V to run hidden malware inside lightweight VMs, evading detection and maintaining stealthy control over targets.
Ransom payment rates drop to historic low as attackers adapt
Thu, 30th Oct 2025
#
ransomware
#
crypto
#
phishing
Ransom payments fell to a historic low of 23% in Q3 2025 as cyber extortion tactics shift towards targeted, costlier attacks on larger firms.
Ransomware groups surge as automation cuts attack time to 18 mins
Thu, 23rd Oct 2025
#
ransomware
#
encryption
#
advanced persistent threat protection
Automation and AI slash ransomware attack times to 18 minutes, challenging defenders to match speed with automated defences, says ReliaQuest report.
Expel Intel launches to deliver actionable threat intelligence insights
Thu, 9th Oct 2025
#
advanced persistent threat protection
#
socs
#
cybersecurity
Expel has launched Expel Intel, a new team providing actionable cyber threat insights based on real-world incidents to help security teams improve defences.
Oracle issues urgent patch as Cl0p exploits suite flaw for attacks
Wed, 8th Oct 2025
#
ransomware
#
mfa
#
advanced persistent threat protection
Oracle has issued an urgent patch for a critical flaw in its E-Business Suite, exploited by the Cl0p ransomware group using advanced social engineering tactics.
Broadcom patches VMware zero-day exploited for nearly a year
Thu, 2nd Oct 2025
#
cloud security
#
advanced persistent threat protection
#
it automation
Broadcom patches a VMware zero-day flaw exploited for nearly a year, allowing attackers root access to virtual machines in certain configurations.
Vane Viper linked to over 1 trillion DNS queries & ad fraud scams
Wed, 17th Sep 2025
#
martech
#
advanced persistent threat protection
#
cybersecurity
Vane Viper, a threat actor posing as an adtech firm, generated over 1 trillion DNS queries last year linked to malware and ad fraud, warns Infoblox.
Bell Canada adds cybersecurity as core company service
Wed, 10th Sep 2025
#
advanced persistent threat protection
#
breach prevention
#
risk & compliance
Bell launched Bell Cyber, aiming to build a CAD $1 billion AI-powered solutions business amid rising cyber threats in Canada.
Oyster Backdoor mimics IT management tools to target IT professionals
Wed, 27th Aug 2025
#
malware
#
firewalls
#
ransomware
Oyster Backdoor malware, disguised as WinSCP and PuTTY, targets healthcare IT professionals to enable ransomware operations like Rhysida, warns BlueVoyant.
Global ransomware attacks rise as healthcare faces surge in cyber threats
Fri, 22nd Aug 2025
#
firewalls
#
ransomware
#
encryption
Ransomware attacks surge to 20 daily incidents in 2025H1, with healthcare facing increased cyber threats and hackers targeting overlooked IoT devices worldwide.
Phishing campaign uses fake Microsoft apps to bypass MFA
Tue, 19th Aug 2025
#
hyperscale
#
mfa
#
cloud security
Proofpoint exposes phishing attacks using fake Microsoft apps to bypass MFA and hijack Microsoft 365 accounts, affecting thousands globally in 2025.
LevelBlue & Akamai launch managed service for web app security
Fri, 15th Aug 2025
#
firewalls
#
devops
#
application security
LevelBlue and Akamai have teamed up to offer a managed web app and API security service, tackling rising threats with AI-driven, 24/7 protection and expert support.
Black Kite unveils ASI for targeted third-party cyber risk
Sat, 9th Aug 2025
#
ransomware
#
advanced persistent threat protection
#
supply chain
Black Kite has launched its Adversary Susceptibility Index to help firms spot which suppliers are most exposed to specific cyber threat actors, enhancing risk management.
SquareX launches open-source toolkits to defend browsers
Fri, 8th Aug 2025
#
firewalls
#
network security
#
advanced persistent threat protection
SquareX launches two open-source toolkits to help security teams simulate and defend against browser-based attacks that evade traditional enterprise defences.
AI-driven DNS threats & malicious adtech surge worldwide
Tue, 5th Aug 2025
#
malware
#
phishing
#
advanced persistent threat protection
Infoblox's 2025 report reveals a surge in AI-driven DNS threats and widespread malicious adtech affecting global organisations, urging proactive cyber defence.
BeyondTrust launches Phantom Labs to boost identity security research
Tue, 5th Aug 2025
#
data science
#
iam
#
cybersecurity
BeyondTrust launches Phantom Labs, a specialised team to research identity security threats and enhance protection against identity exploitation in hybrid and cloud environments.
AI-driven DNS threats & malicious adtech fuel cybercrime surge
Tue, 5th Aug 2025
#
phishing
#
email security
#
ai
Infoblox reports a surge in AI-driven DNS threats and malicious adtech, with 25% of new domains found malicious, urging firms to adopt proactive cyber defences.
CrowdStrike report warns of GenAI driving surge in cyberattacks
Tue, 5th Aug 2025
#
malware
#
ransomware
#
mfa
CrowdStrike warns that generative AI is fuelling a surge in cyberattacks, targeting cloud systems, AI agents, and escalating sophisticated social engineering globally.
Global ransomware attacks drop 43% but threats evolve quickly
Sat, 26th Jul 2025
#
ransomware
#
advanced persistent threat protection
#
cybersecurity
Global ransomware attacks fell 43% in Q2 to 371 cases in June, but evolving tactics signal persistent threats amid rising cyber warfare and political motives.
Digital attack surfaces expand as key exposures & risks double
Fri, 25th Jul 2025
#
malware
#
data protection
#
ransomware
Organisations face doubled key cyber exposure risks as digital attack surfaces widen, with exposed ports and credentials surging in early 2025, says ReliaQuest.