#RansomWareAttacks
🚨Cyberattack Update‼️

🇯🇵 Japan - Asahi Group Holdings

Qilin ransomware group claims responsibility for a ransomware attack on Asahi Group Holdings.

Discover more at hackrisk.io
October 8, 2025 at 8:17 AM
#CISA says the Medusa ransomware operation has impacted over 300 organizations in critical infrastructure sectors in the United States until last month. #CyberSecurity #RansomwareAttacks www.bleepingcomputer.com/news/securit...
CISA: Medusa ransomware hit over 300 critical infrastructure orgs
CISA says the Medusa ransomware operation has impacted over 300 organizations in critical infrastructure sectors in the United States until last month.
www.bleepingcomputer.com
March 12, 2025 at 8:32 PM
#Advantest Corporation disclosed that its corporate network has been targeted in a ransomware attack that may have affected customer or employee data. #RansomWareAttacks
#Japanese #IT #CyberSecurity www.bleepingcomputer.com/news/securit...
Japanese tech giant Advantest hit by ransomware attack
Advantest Corporation disclosed that its corporate network has been targeted in a ransomware attack that may have affected customer or employee data.
www.bleepingcomputer.com
February 21, 2026 at 1:41 PM
Security researcher Yohanes Nugroho has released a decryptor for the Linux variant of #Akira ransomware, which utilizes GPU power to retrieve the decryption key and unlock files for free. #RansomwareAttacks #Cybersecurity www.bleepingcomputer.com/news/securit...
GPU-powered Akira ransomware decryptor released on GitHub
Security researcher Yohanes Nugroho has released a decryptor for the Linux variant of Akira ransomware, which utilizes GPU power to retrieve the decryption key and unlock files for free.
www.bleepingcomputer.com
March 15, 2025 at 11:33 PM
kuroganekasei.com
October 24, 2025 at 12:11 PM
Hackers just weaponized Anthropic’s AI chatbot Claude to run ransomware-style attacks.

📌 17 orgs hit—healthcare, gov, even emergency services
📌 Ransoms up to $500K
📌 The AI made its own decisions on what data to steal

This is the future of cybercrime. #RansomwareAttacks #cybercrime
Anthropic Disrupts AI-Powered Cyberattacks Automating Theft and Extortion Across Critical Sectors
Anthropic stopped AI-driven cyberattacks in July 2025, blocking extortion demands up to $500K targeting 17 groups.
thehackernews.com
August 27, 2025 at 9:17 PM
Scattered Spider is now hijacking VMware ESXi hypervisors—not with malware, but fake help desk calls.

They impersonate admins, reset passwords, and deploy ransomware directly from the hypervisor.

Google says it's fast, stealthy, and crippling. #RansomwareAttacks #ScatteredSpider
Scattered Spider Hijacks VMware ESXi to Deploy Ransomware on Critical U.S. Infrastructure
Scattered Spider targets VMware ESXi in fast, stealthy ransomware attacks across U.S. retail and airline sectors.
thehackernews.com
July 28, 2025 at 3:15 PM
🇳🇱 #Cybersecurity Seminars program expands to the Netherlands under the leadership of Virtual Routes! It focuses on enabling students to help local community organizations defend against #RansomwareAttacks. Learn more about the program and register interest: virtual-routes.org/initiatives/...
May 14, 2025 at 7:31 AM
United Kingdom water supplier Southern Water has disclosed that it incurred costs of £4.5 million ($5.7M) due to a cyberattack it suffered in February 2024. #BlackBasta #RansomwareAttacks #CyberCrime www.bleepingcomputer.com/news/securit...
Southern Water says Black Basta ransomware attack cost £4.5M in expenses
United Kingdom water supplier Southern Water has disclosed that it incurred costs of £4.5 million ($5.7M) due to a cyberattack it suffered in February 2024.
www.bleepingcomputer.com
February 27, 2025 at 8:19 AM
#Qilin, a ransomware group with a track record of intrusions against major entities around the world, claimed responsibility for a hack on Japan’s Asahi Group, which disrupted production at the beer and beverage giant. #RansomwareAttacks #AsahiBeer #CyberAlerts www.japantimes.co.jp/business/202...
Qilin cybercrime gang claims hack on Japan's Asahi
The ransomware group has a track record of intrusions against major entities around the world.
www.japantimes.co.jp
October 11, 2025 at 2:28 PM
A new multi-platform ransomware-as-a-service (RaaS) operation named VanHelsing has emerged, targeting Windows, Linux, BSD, ARM, and ESXi systems. #RansomwareAttacks #CyberAlerts www.bleepingcomputer.com/news/securit...
New VanHelsing ransomware targets Windows, ARM, ESXi systems
A new multi-platform ransomware-as-a-service (RaaS) operation named VanHelsing has emerged, targeting Windows, Linux, BSD, ARM, and ESXi systems.
www.bleepingcomputer.com
March 24, 2025 at 9:21 PM
Japanese beer-making giant Asahi has disclosed today that a ransomware attack caused the IT disruptions that forced it to shut down factories this week.
#RansomwareAttacks
#CyberSecurity
#ASAHIBeer 🍺
#Japan www.bleepingcomputer.com/news/securit...
Japanese beer giant Asahi confirms ransomware attack
Japanese beer-making giant Asahi has disclosed today that a ransomware attack caused the IT disruptions that forced it to shut down factories this week.
www.bleepingcomputer.com
October 3, 2025 at 2:58 PM
Ransomware gangs are exploiting unpatched SimpleHelp flaws to hit utility billing customers with double extortion attacks — since Jan 2025.

CISA warns: patch now or risk serious breaches.
#RansomwareAttacks #CyberSecurity
thehackernews.com/2025/06/rans...
Ransomware Gangs Exploit Unpatched SimpleHelp Flaws to Target Victims with Double Extortion
CISA warns ransomware groups exploiting unpatched SimpleHelp RMM to breach organizations worldwide, risking data theft and double extortion
thehackernews.com
June 13, 2025 at 9:30 PM
In case you missed it — Over 4,600 attacks. 300+ orgs hit.

A China-linked threat group is exploiting SharePoint flaws to drop Warlock ransomware on unpatched systems.
#RansomwareAttacks #CyberSecurity
thehackernews.com/2025/07/stor...
Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems
Storm-2603 exploits SharePoint flaws to deploy Warlock ransomware, affecting 400+ victims. Microsoft urges mitigation.
thehackernews.com
July 28, 2025 at 3:27 PM
One of the largest providers of social services globally, the Christian organization Salvation Army, has been allegedly hit by a ransomware attack.

#Christian #cybersecurity #hack #RansomwareAttacks cybernews.com/security/sal...
Hackers say they’ve snatched Salvation Army's data​ | Cybernews
Chaos ransomware gang claims to have breached global charity giant the Salvation Army.
cybernews.com
May 28, 2025 at 7:30 PM
Anna Jaques Hospital has confirmed on its website that a ransomware attack it suffered almost precisely a year ago, on December 25, 2023, has exposed sensitive health data for over 310,000 patients. #ransomwareattacks #dataleaking www.bleepingcomputer.com/news/securit...
Anna Jaques Hospital ransomware breach exposed data of 300K patients
Anna Jaques Hospital has confirmed on its website that a ransomware attack it suffered almost precisely a year ago, on December 25, 2023, has exposed sensitive health data for over 316,000 patients.
www.bleepingcomputer.com
December 8, 2024 at 12:21 AM
The arrest of a suspect after a spate of #RansomwareAttacks in the Netherlands is an unusual win for law enforcement, but a more holistic approach is required. Read the new piece by @jamesshires.bsky.social and @maxwsmeets.bsky.social: bindinghook.com/articles-hoo...
Ransomware groups are not always out of reach
The arrest of a suspect after a spate of ransomware attacks in the Netherlands is an unusual win for law enforcement, but a more holistic approach is required.
bindinghook.com
May 14, 2025 at 7:38 AM
“We never drop tools. We use yours.” — #BlackBasta ransomware.

A new Bitdefender analysis of 700,000 incidents reveals this chilling truth: 84% of major cyberattacks use Living Off the Land tools like netsh.exe, powershell.exe, wmic.exe.
#RansomwareAttacks
thehackernews.com/expert-insig...
Living Off the Land: What We Learned from 700,000 Security Incidents
84% of severe cyberattacks used LOTL tools, Bitdefender finds—revealing admin utilities as prime attacker targets.
thehackernews.com
June 1, 2025 at 4:25 AM
Kidney dialysis firm DaVita disclosed Monday it suffered a weekend ransomware attack that encrypted parts of its network and impacted some of its operations. #RansomwareAttacks #cybercrime www.bleepingcomputer.com/news/securit...
Kidney dialysis firm DaVita hit by weekend ransomware attack
Kidney dialysis firm DaVita disclosed Monday it suffered a weekend ransomware attack that encrypted parts of its network and impacted some of its operations.
www.bleepingcomputer.com
April 14, 2025 at 9:20 PM
Coca-Cola and its bottling partner CCEP, have been named in two separate cyberattack claims. #Everest alleges a ransomware hit, while #Gehenna says it breached CRM data.

hackread.com/coca-cola-bo...

#Cybersecurity #RansomwareAttacks #Databreach #CocaCola
Coca-Cola, Bottling Partner Named in Separate Ransomware and Data Breach Claims
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
May 25, 2025 at 11:39 PM
A new multi-platform ransomware-as-a-service (RaaS) operation named VanHelsing has emerged, targeting Windows, Linux, BSD, ARM, and ESXi systems. #RansomwareAttacks #CyberAlerts www.bleepingcomputer.com/news/securit...
New VanHelsing ransomware targets Windows, ARM, ESXi systems
A new multi-platform ransomware-as-a-service (RaaS) operation named VanHelsing has emerged, targeting Windows, Linux, BSD, ARM, and ESXi systems.
www.bleepingcomputer.com
March 24, 2025 at 9:23 PM
#CISA confirmed today that a critical security vulnerability in Cleo Harmony, VLTrader, and LexiCom file transfer software is being exploited in ransomware attacks. #ransomwareattacks #cybercrime www.bleepingcomputer.com/news/securit...
CISA confirms critical Cleo bug exploitation in ransomware attacks
CISA confirmed today that a critical remote code execution bug in Cleo Harmony, VLTrader, and LexiCom file transfer software is being exploited in ransomware attacks.
www.bleepingcomputer.com
December 13, 2024 at 9:37 PM
The #DragonForce ransomware operation successfully breached a managed service provider and used its SimpleHelp remote monitoring and management (RMM) platform to steal data and deploy encryptors on downstream customers' systems. #RansomwareAttacks #CyberSecurity
DragonForce ransomware abuses SimpleHelp in MSP supply chain attack
The DragonForce ransomware operation successfully breached a managed service provider and used its SimpleHelp remote monitoring and management (RMM) platform to steal data and deploy encryptors on dow...
www.bleepingcomputer.com
May 28, 2025 at 8:34 PM
A U.S. org was hit by Play ransomware using CVE-2025-29824 before it was patched. Attackers slipped in via a Cisco ASA, dropped fake Palo Alto files, stole AD data, and planted custom tools — but didn’t launch ransomware. #RansomwareAttacks #CyberDefence thehackernews.com/2025/05/play...
Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day to Breach U.S. Organization
Play ransomware exploited CVE-2025-29824 zero-day in a U.S. breach before Microsoft patched it
thehackernews.com
May 7, 2025 at 9:43 PM