August 29, 2022
Quantum ransomware attack hits Dominican Republic government agency
The Dominican Republic's Instituto Agrario Dominicano (IAD) has suffered a ransomware attack by the Quantum group. According to the ransom note, at least four physical servers and eight virtual servers with the databases, applications and emails were compromised.
August 29, 2022
Bombardier Recreational Products hit by RansomEXX gang
The RansomEXX ransomware gang is claiming responsibility for the cyberattack against Bombardier Recreational Products (BRP), which was disclosed by the company on August 8, 2022.
August 29, 2022
Greece's largest natural gas distributor hit by Ragnar Locker ransomware
Greece's largest distributor of natural gas, National Natural Gas System Operator S.A. (or DEFSA), has stated that they've suffered a limited-scope data breach and IT system outage following a cyberattack. Further details were confirmed after their data was leaked by the Ragnar Locker ransomware gang.
August 25, 2022
SideWinder uses weaponized Word documents to compromise victims’ machines
The SideWinder APT group was first discovered in 2018, and since earlier this year has been actively targeting military, defense and other industries in South Asia. They used to spread phishing emails with Word files that downloaded additional files to decode, drop and start the malware, which collects and uploads victims’ data to remote servers. They've since infected Android devices with malicious apps in Google Play.
August 22, 2022
U.K. water supplier disrupted in Cl0p ransomware attack
South Staffordshire Water, a British company that supplies clean water to 1.6 million consumers, has confirmed that they were disrupted by a cyberattack. Fortunately, the attack only affected office IT systems and did not impact the water distribution systems, so the water supply is safe.
August 22, 2022
RansomHouse breaches eight Italian municipalities, publishes 2.1 TB of data
Cybercrime group RansomHouse claims to have compromised eight Italian districts. The group has published 2.1 TB of exfiltrated data from the IT infrastructures of the union of Tuscan municipalities, in the metropolitan city of Florence.
August 22, 2022
Argentinian judiciary's services disrupted by PLAY ransomware
Argentina's Judiciary of Córdoba has shut down its IT systems and online portal after suffering a ransomware attack, claimed by the new 'PLAY' ransomware operation. The Judiciary confirmed that it has engaged with Microsoft, Cisco and other local specialists to investigate the attack.
August 16, 2022
Hydrox: A new wiper attacks
Hydrox was first spotted by Twitter user Petrovich on July 29, 2022. On August 3, EnigmaSoft described this threat as a harmful malware that actually wipes users' data. This conclusion was made from a “ransom note” which didn’t actually contain any credentials or links for paying the ransom.
August 15, 2022
Cisco breached in Yanluowang ransomware attack, 2.8 GB data stolen
Multi-national tech conglomerate Cisco has confirmed that the Yanluowang ransomware gang breached its corporate network in late May, and that the group tried to extort them by threatening to leak stolen files online. The Yanluowang gang claims to have stolen 2.8 GB of data, consisting of approximately 3,100 files which Cisco has described as "not sensitive."
August 15, 2022
U.K.'s National Health Service suffers outage after cyberattack
The United Kingdom's National Health Service (NHS) 111 emergency services are affected by a significant and ongoing outage. It was triggered by a cyberattack that hit the systems of Advanced, a British managed services provider (MSP).
August 08, 2022
Electronics manufacturer Semikron hit by LV ransomware
German electronics manufacturer Semikron has reported that they were hit by a ransomware attack. The LV ransomware group has claimed responsibility for this attack, and is threatening to leak 2 TB worth of stolen data if their ransom demands are not met.
August 05, 2022
European pipeline operator hit by BlackCat/ALPHV ransomware
The ALPHV/BlackCat ransomware gang claims to have stolen more than 150 GB of data from Creos Luxembourg S.A., a company which manages natural gas pipelines and electrical networks in the Grand Duchy of Luxembourg. The alleged stolen data consists of 180,000 files, including contracts, agreements, passports, bills and emails.