Cyber Security Threats

Stay informed about the ever-evolving landscape of cyber threats. Explore the latest developments in malware, ransomware, and zero-day vulnerabilities, and learn how to protect your digital assets from these risks.

AI Finds 38 Vulnerabilities in OpenEMR Platform

AI Finds 38 Vulnerabilities in OpenEMR Platform

An automated analysis of the OpenEMR electronic medical records platform identified 38 previously unknown vulnerabilities, including two highest severity vulnerabilities rated CVSS 10.0, with potential impact on patient data integrity, system access, and server-level compromise. … Read more

Citrix Disclosed Vulnerabilities Affecting NetScaler ADC and NetScaler Gateway

Citrix Disclosed Vulnerabilities Affecting NetScaler ADC and NetScaler Gateway

Citrix disclosed a vulnerability tracked as CVE-2026-3055 in NetScaler ADC and NetScaler Gateway that can produce a memory overread whenever the application is configured as a SAML identity provider and that has a CVSS v4 … Read more

Paubox Research Identifies Email Security Risks Affecting Healthcare Organizations in 2026

Paubox Research Identifies Email Security Risks Affecting Healthcare Organizations in 2026

Email security failures continue to expose healthcare organizations to breaches and regulatory exposure, with research identifying authentication gaps, encryption weaknesses, and credential theft as contributing factors in healthcare email incidents heading into 2026. Email Remains … Read more

Data-Only Extortion Attacks Increased Eleven Times in 2025

Data-Only Extortion Attacks Increased Eleven Times in 2025

Data-only extortion attacks increased elevenfold between November 2024 and November 2025, representing a measurable shift in cyber extortion activity documented in recent threat reporting. Report Findings Arctic Wolf released a 2026 threat report identifying a … Read more

OCR's Urges HIPAA-Covered Entities to Strengthen System Security

OCR’s Urges HIPAA-Covered Entities to Strengthen System Security

The Department of Health and Human Services (HHS) Office for Civil Rights (OCR) published its 2026 quarterly cybersecurity newsletter where it prompted HIPAA-covered entities to take do something to strengthen system security and make it … Read more

Cyberattack on ARC Community Services by INC Ransom Ransomware Group

Cyberattack on ARC Community Services by INC Ransom Ransomware Group

ARC Community Services based in Madison, WI offers to women and children substance use disorder treatment, behavioral health, and support services. It encountered a ransomware attack that resulted in the theft of sensitive information from … Read more

Threat Actors Activiely Exploiting Oracle Identity Manager Critical Vulnerability

Threat Actors Activiely Exploiting Oracle Identity Manager Critical Vulnerability

U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that threat actors are actively exploiting a critical vulnerability identified in Oracle Identity Manager (OIM). CISA advised all government civilian executive branch institutions to patch the vulnerability … Read more

224% Increase in Healthcare Sector Attacks Targeting Mobile Gadgets

224% Increase in Healthcare Sector Attacks Targeting Mobile Gadgets

Cybersecurity company Zscaler’s new report revealed that cyberattacks on Android mobile devices in critical infrastructure industries significantly increased in 2024. The energy sector had the biggest increase in mobile attacks with 387%, followed by healthcare … Read more

Coveware Report Reveals Only 23% of Ransomware Attack Victims Pay the Ransom

Report Reveals Only 23% of Ransomware Attack Victims Pay the Ransom

According to Coveware, a ransomware remediation company, the ransomware scene is divided into two where bigger companies face more targeted, high-cost attacks, while mid-market firms are attacked in volume. Ransomware groups perform high-volume attacks even … Read more

Medusa Ransomware Attacks Affect Fortra GoAnywhere Transfer Tool

Medusa Ransomware Attacks Affect Fortra GoAnywhere Transfer Tool

Medusa ransomware attacks are actively exploiting a critical vulnerability identified in the GoAnywhere MFT secure web-based file transfer tool of Fortra. Microsoft’s Threat Intelligence Team reported that a threat group identified as Storm-1175 is exploiting … Read more

Critical Vulnerabilities Found in Santesoft Sante PACS Server

Critical Vulnerabilities Found in Santesoft Sante PACS Server

Santesoft discovered five vulnerabilities in the medical image archiving and communication system of its Sante PACS Server, which include a critical vulnerability that makes it possible for the interception of user credentials. The vulnerabilities impact … Read more

113,500 Individuals Affected by Highlands Oncology Group Ransomware Attack

113,500 Individuals Affected by Highlands Oncology Group Ransomware Attack

Highlands Oncology Group, a provider of complete cancer care in six areas in Northwest Arkansas, recently announced a cyberattack that was initially discovered on June 2, 2025. A hacker accessed the Group’s system on January … Read more

GRIT Reports Drop in Q2 Ransomware Attacks

GRIT Reports Drop in Q2 Ransomware Attacks

Ransomware attacks in Q2 of 2025 diminished by 23% compared to the last quarter, but they are 43% higher compared to this time in 2024, with the drop only partly the result of typical seasonal … Read more

123% Increase in Ransomware Attacks in 2 Years with More Small Ransomware Groups Emerging

123% Increase in Ransomware Attacks in 2 Years with More Small Ransomware Groups Emerging

Black Kite’s new research has revealed the evolving ransomware environment. Last year, a notable shift was seen from big ransomware groups doing many attacks to an increasing number of smaller groups conducting the attacks. The … Read more

Saint Louis University to Pay $2 Million to Settle Data Breach Lawsuit

Saint Louis University to Pay $2 Million to Settle Data Breach Lawsuit

St. Louis University and SSM Health Saint Louis University Hospital (SSM-SLUH) agreed to settle a class action lawsuit involving a data breach in 2023. The terms of the settlement required a $2 million fund to … Read more

What is a HIPAA Security Incident?

What is a HIPAA Security Incident?

A HIPAA security incident is defined by the HIPAA Security Rule as “the attempted or successful unauthorized access, use, disclosure, modification, or destruction of information or interference with system operations in an information system.”  It … Read more

BlackLock Ransomware Operation Increased Data Leaks by 1,425%

BlackLock Ransomware Operation Increased Data Leaks by 1,425%

BlackLock is a new ransomware-as-a-service (RaaS) group that has increased attacks and might become 2025’s most prominent RaaS group. Based on ReliaQuest Threat Spotlight, the BlackLock group was initially noticed in March 2024 using the … Read more

Survey Shows 88% of Companies in 2024 Encountered a Ransomware Attack

The Ponemon Institute conducted a survey recently on behalf of Illumio, a provider of a zero-trust segmentation platform. Based on the survey results, 88% of participant organizations had encountered at least one ransomware attack in … Read more

50% of Rhode Island Residents Potentially Affected by a Ransomware Attack

50% of Rhode Island Residents Potentially Affected by a Ransomware Attack

The cyberattack that compelled the deactivation of Rhode Island’s public benefits system (RI Bridges) has possibly compromised the personal information of over 50% of Rhode Island’s population, around 650,000 people, as reported by state Governor … Read more

US Healthcare Organizations Targeted by New Interlock Ransomware Group

US Healthcare Organizations Targeted by New Interlock Ransomware Group

Cisco Talos Incident Response reported that a new ransomware group has been targeting the healthcare sector and has been active since September 2024. Interlock ransomware is a threat group that claims to conduct attacks for … Read more

Why are data breaches becoming more common?

Despite significant efforts by organizations to fortify their defenses, the frequency of data breaches continues to rise. In fact, it is now commonly accepted that no data which is gathered or processed online can ever … Read more

North Korean Cyber Group Teams Up with Play Ransomware in Attack

The North Korean cyber group, Jumpy Pisces, recently collaborated with the Play ransomware network in an attacks. The link up is the first recorded instance of North Korean state-backed hackers using an existing ransomware infrastructure, … Read more

Sniper Dz Credential Theft Scams

How Sniper Dz Enables Over 140,000 Credential Theft Scams

In the past year, the phishing-as-a-service (PhaaS) platform known as Sniper Dz has facilitated over 140,000 cyberattacks. The free platform offers tools to help cybercriminals target user credentials, making phishing campaigns easier to launch even … Read more

Linux CUPS Printing System Expose Network Risks

Vulnerabilities in Linux CUPS Printing System Expose Network Risks

Linux systems have recently come under threat due to a set of Remote Code Execution (RCE) vulnerabilities identified in the Common Unix Printing System (CUPS). These vulnerabilities, classified as severe, have the potential to enable … Read more

North Corea Sparkling Pisces New Malware

Sparkling Pisces Unleashes New Malware: KLogEXE and FPSpy

Sparkling Pisces is a North Korean threat actor group recognized for its cyberespionage operations and spear-phishing campaigns. Unit 42 researchers recently identified two new malware variants linked to this group, named KLogEXE and FPSpy. These … Read more

Ransomware Attacks Hybrid Cloud Security

Storm-0501 Threatens Hybrid Cloud Security with Ransomware Attacks

The financially motivated cybercriminal group known as Storm-0501 is targeting U.S. industries, including government, manufacturing, transportation, and law enforcement, through ransomware attacks on hybrid cloud environments. Microsoft has detailed how this group’s multi-stage attack campaigns … Read more

PondRAT Backdoor Hidden in Python Packages Hits Developers

PondRAT Backdoor Hidden in Python Packages Hits Developers

Researchers at Unit 42 have uncovered a new campaign that involves the delivery of Linux and macOS backdoors through poisoned Python packages. These packages are uploaded to the popular PyPI repository, and have been linked … Read more

Europol Leads International Effort to Shut Down Phone Unlocking Phishing Scheme

An international criminal network responsible for a large-scale phishing scheme targeting mobile phone credentials has been dismantled in a coordinated operation led by Europol and law enforcement agencies across six countries. The operation, codenamed “Operation … Read more

The Resurgence of TeamTNT

Recent investigations suggest that the well-known threat group “TeamTNT”, may be back in operation. The group that is infamous for targeting cloud environments like Docker, Kubernetes, and Redis, has left traces in new attacks observed … Read more

New Phishing Attack Targeting Major Sectors

A new type of phishing attack is deceiving users into giving up sensitive login credentials without requiring any direct interaction. Researchers from Palo Alto Networks’ Unit 42 have identified phishing campaigns that use refresh entries … Read more

Russian GRU Unit 29155 Targeting Infrastructure Worldwide

In a recent advisory issued on September 5th, 2024, the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), and the National Security Agency (NSA) discuss the cyber activities of Russia’s GRU … Read more

The inside threat: Mitigation of the risks of deliberate data violations and corporate sabotage

It is well known most data breaches come from employee error, some 88% according to Stanford University Professor Jeff Hancock in fact. As difficult as a costly mistake may be for a business to accept, … Read more

Why RansomHub is a Growing Threat Across Sectors

Since its emergence in early 2024, RansomHub has quickly expanded its operations and now affects over 210 victims across various sectors. This ransomware-as-a-service (RaaS) variant has become a player in the world of cybercrime, targeting … Read more

The Rise of In-Memory Threat ‘PEAKLIGHT’

Recent cybersecurity research has uncovered an attack chain utilizing a memory-only malware downloader, known as PEAKLIGHT. This PowerShell-based downloader uses a multi-stage infection process, with a range of obfuscation techniques to evade detection and deliver … Read more

The Hidden Security Threat in Contactless Key Cards

A security flaw has been discovered in millions of contactless key cards used worldwide for office and hotel access. French cybersecurity firm Quarkslab has identified a hardware backdoor in chips manufactured by Shanghai Fudan Microelectronics … Read more

Radar/Dispossessor Ransomware Group Operations Disrupted by the FBI

The Federal Bureau of Investigation (FBI) spearheaded a global operation that successfully dismantled the infrastructure of the Radar/Dispossessor ransomware group, a criminal ransomware-as-a-service (RaaS) group led by someone known as ‘Brain’. The operation led to … Read more

SMS Phishing Tool Xeon Sender Abuses SaaS Platforms for Large-Scale Campaigns

Xeon Sender is a cloud-based tool that has cybersecurity experts increasingly concerned, due to its use by attackers to conduct large-scale SMS spam and phishing campaigns by exploiting legitimate software-as-a-service (SaaS) providers. The tool has … Read more

Blood Supplies Affected by Ransomware Attack on OneBlood

OneBlood, a nonprofit blood donation organization based in Florida, encountered a ransomware attack that is impacting its capability to supply blood to hospitals in the U.S. OneBlood supplies blood to about 250 hospitals in Alabama, … Read more

74% of Ransomware Victims Suffered Multiple Ransomware Attacks

A new study by the cybersecurity company Semperis showed that companies tend to be attacked by ransomware groups several times. 74% of organizations that encountered a ransomware attack reported experiencing multiple attacks. These attacks caused … Read more

The Cyber Espionage Campaign Threatening Japan

A newly discovered cyber espionage operation, referred to as “Cuckoo Spear,” has brought to light the ongoing activities of a state-backed Chinese hacking group that has been quietly infiltrating Japanese organizations. This covert campaign is … Read more

Phishing Attack on Memorial Sloan Kettering Cancer Center

Memorial Sloan Kettering Cancer Center (MSK) based in New York City has reported the compromise of the protected health information (PHI) of 12,274 people due to a phishing attack. On April 26, 2024, MSK discovered … Read more

$950,000 Paid by Heritage Valley Health System to Resolve Alleged HIPAA Violations

The 3-hospital health system has over 50 doctor clinics and numerous community satellite services in eastern Ohio, Pennsylvania, and the panhandle of West Virginia. In 2017, Heritage Valley was impacted by a worldwide malware attack. … Read more

Ransomware Group Exposes 300 Million Patients’ Data

The Qilin ransomware group, believed to be Russian, uploaded to its dark web leak site the information stolen during the attack on Synnovis because of non-payment of the $50 million ransom demand. On June 3, … Read more

Healthcare Cybersecurity Awareness Training Course Launched by ComplianceJunction

ComplianceJunction, the top-rated HIPAA training vendor, has created a new training course for healthcare organizations to allow them to raise employee awareness of the common cyber threats that provide hackers with access to healthcare networks … Read more

How to Identify Phishing Emails

Investigations of cyberattacks and data breaches often reveal the initial access vector to be a phishing email. Phishing provides threat actors with a foothold from where they can achieve an organziation-wide compromise, so teaching employees … Read more

Liability for Cyber Incidents

The rapid digitisation of every aspect of our lives has led to an ever-increasing risk of cyber incidents for all types of business. Significant financial losses, disruptions to operations, damage to reputation, and legal consequences … Read more

BreachForums, Major Personal Data Sales Platform, Seized by the FBI

On May 15, 2024, the FBI, in collaboration with international law enforcement agencies, seized the notorious cybercrime forum BreachForums. This action marks a severe blow to a site that has been a major marketplace for … Read more

Rabotnik, a Ukrainian hacker affiliated with REvil Ransomware Group, sentenced to 13 years in prison

On May 1st, a Texas court sentenced Yaroslav Vasinskyi, also known as “Rabotnik,” to over 13 years in prison, marking a significant chapter in the global efforts to dismantle the REvil ransomware group. At just … Read more

LightSpy Malware: An Hidden Threat to iPhone Users

A sophisticated spyware attack has been uncovered, targeting certain iPhones. After Apple issued a warning, cybersecurity experts were able to trace the origins of the LightSpy malware, revealing a highly advanced spyware with potential links … Read more

Unite Here Data Breach And Lurie Children’s Hospital Cyberattack

791,000 People Affected by UNITE HERE Data Breach The labor Union, UNITE HERE, located in New York has 300,000 working individuals all over the United States and Canada. It recently filed a breach report to … Read more

12311 Next