Related Threat Clusters
-
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
EU Sanctions Russia Over Ongoing Cyber Espionage Campaign
The European Union has condemned and sanctioned Russia for a prolonged cyber espionage campaign targeting its member states. The campaign, orchestrated by the 16th Centre of the FSB, has involved infiltrating government…
172 articles · Updated July 13, 2026 -
EU Sanctions Vitaly Kovalev, Ransomware Leader of Trickbot Group
On July 14, 2026, the European Union, in coordination with the U.S. and U.K., sanctioned Vitaly Nikolayevich Kovalev, known as 'Stern,' a key figure in the Trickbot ransomware syndicate. Kovalev is linked to over $300…
4 articles · Updated July 15, 2026 -
$15M Grinex Cyberattack Halts Operations Amid Allegations of Foreign Intelligence Involvement
Grinex, a Kyrgyzstan-based cryptocurrency exchange linked to Russia, suspended its operations following a cyberattack that resulted in the theft of over 1 billion rubles (approximately $13 million). The attack, which…
19 articles · Updated April 16, 2026 -
Conti Ransomware Group's Internal Messages Leaked Amid Ukraine Conflict
In 2022, the Conti ransomware group experienced a major internal collapse, leading to the leak of over 300,000 internal messages. These messages revealed the group's operations and internal conflicts, particularly in…
2 articles · Updated July 12, 2026 -
Critical RCE Vulnerability in Veeam Backup Exposes Organizations to Attacks
Veeam has disclosed a critical vulnerability (CVE-2026-44963) affecting its Backup & Replication software, allowing authenticated domain users to execute remote code on domain-joined backup servers. This flaw impacts…
11 articles · Updated June 9, 2026 -
US Treasury Sanctions VPN and Malware Providers for Ransomware Support
On July 13, 2026, the U.S. Treasury's Office of Foreign Assets Control (OFAC) sanctioned First VPN Service (1VPNS), its administrator Dmytro Rashevskyi, and malware provider Yegeniy Vladimirovich Silayev for enabling…
35 articles · Updated July 13, 2026 -
Foxconn Cyberattack: Nitrogen Ransomware Claims 8TB of Data Theft
Foxconn confirmed a cyberattack on its North American facilities, attributed to the Nitrogen ransomware group, which claims to have stolen 8 terabytes of data, including over 11 million files. The attack reportedly…
54 articles · Updated May 12, 2026 -
Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
751 articles · Updated April 29, 2026 -
Russian Silent Ransom Group Uses In-Person Tactics to Target US Law Firms
The Silent Ransom Group has been implicated in a series of cyberattacks targeting US law firms, employing operatives to physically access computers and insert USB devices. This tactic aims to bypass remote security…
2 articles · Updated June 27, 2026
Recent Intelligence Reports
- Russian Motivations Hanoi Convention Cybercrime — www.justsecurity.org · August 22, 2026
- Risk Repeat Conti Ransomware Gang Gets Breached — www.techtarget.com · August 12, 2026
- Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure — Infosecurity-Magazine · August 12, 2026
- Top 5 Cyber Threat Intelligence Services Benchmarked — Aimultiple · August 12, 2026
- Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA — Darkreading · August 11, 2026
- Gunra Ransomware Hit Hospitals and Governments; Linux Victims Should Not Pay Ransom — Techtimes · August 11, 2026
- Episode Webpage — www.bbc.co.uk · August 11, 2026
- US and South Korea warn of Gunra ransomware targeting govt agencies — Bleepingcomputer · August 11, 2026