// RANSOMWARE

// RANSOMWARE

9 articles
All Zero-Day Ransomware Phishing Supply Chain AI Security Data Breaches Malware Vulnerabilities Attacks Security
Marquis sues SonicWall over backup breach that led to ransomware attack

Marquis Software Solutions is suing SonicWall after a backup breach allegedly enabled a ransomware attack that disrupted operations at 74 U.S. banks. This represents an actual security incident involving a real vulnerability in SonicWall's backup system that resulted in tangible harm to financial institutions.

RAMP Forum Seizure Fractures Ransomware Ecosystem

Law enforcement seized the RAMP ransomware forum, a significant dark web marketplace where ransomware gangs coordinated attacks and sold victim data. This action disrupted the ransomware ecosystem and fractured criminal operations, representing an actual law enforcement action against a real threat infrastructure used by multiple ransomware groups.

Medical Device Maker UFP Technologies Hit by Cyberattack

UFP Technologies, a medical device manufacturer, was targeted in a ransomware attack involving both data theft and file-encrypting malware. This represents an actual ransomware incident against a specific organization with confirmed malware deployment.

Mississippi Hospital System Closes All Clinics After Ransomware Attack

The University of Mississippi Medical Center suffered a ransomware attack that forced the closure of approximately three dozen clinics statewide and resulted in cancellation of elective procedures. This represents an actual ransomware incident targeting a specific healthcare organization with documented operational impact.

Japanese tech giant Advantest hit by ransomware attack

Advantest Corporation, a Japanese tech giant, disclosed a ransomware attack on its corporate network that potentially compromised customer or employee data. This represents an actual security incident affecting a specific, named organization with real impacts.

CISA: BeyondTrust RCE flaw now exploited in ransomware attacks

CISA warns that CVE-2024-1731, a remote code execution vulnerability in BeyondTrust Remote Support, is being actively exploited by hackers in ransomware attacks. This represents a real, ongoing security incident with actual threat actors leveraging a disclosed vulnerability against targets.

In Other News: Ransomware Shuts US Clinics, ICS Vulnerability Surge, European Parliament Bans AI

This article aggregates multiple actual security incidents including ransomware attacks shutting down US clinics, a surge in ICS vulnerabilities, and a data leak from an Abu Dhabi conference. While presented as a news roundup, it references real incidents and breach events rather than general advice or marketing.

BeyondTrust Vulnerability Exploited in Ransomware Attacks

CISA has added CVE-2026-1731, a BeyondTrust vulnerability, to its Known Exploited Vulnerabilities (KEV) catalog due to active exploitation in ransomware attacks. This indicates a real vulnerability being actively weaponized against organizations in the wild.

Chip Testing Giant Advantest Hit by Ransomware

Advantest, a major chip testing company, was hit by a ransomware attack. The company is investigating whether customer or employee data was stolen by the hackers in this incident.