ALPHV ransomware site outage rumored to be caused by law enforcement

December 8, 2023 at 01:32PM Ransomware gang ALPHV’s websites have been down for over 30 hours, suggesting a potential law enforcement operation. Admin claims the sites may be back soon, but remain down. Speculation on FBI involvement arises. ALPHV is believed to be a rebrand of DarkSide and BlackMatter, known for targeting critical infrastructure globally. … Read more

Tipalti investigates claims of data stolen in ransomware attack

December 5, 2023 at 12:07PM Tipalti is probing allegations that the ALPHV ransomware group hacked its network and took 256GB of data, affecting clients like Roblox and Twitch. Tipalti is working with Roblox on the issue, and there is no known impact yet. The incident was first claimed by ALPHV in a deleted post. Meeting … Read more

Scattered Spider Hops Nimbly From Cloud to On-Prem in Complex Attack

November 22, 2023 at 11:56AM A group known as Scattered Spider, responsible for the MGM cyberattack in September, has conducted another sophisticated ransomware attack. The group exploited a third-party service to gain access to the target organization’s on-premise network. The attack used tactics similar to the MGM attack, including social engineering and manipulation of multi-factor … Read more

ALPHV/BlackCat Take Extortion Public

November 17, 2023 at 01:35PM ALPHV/BlackCat ransomware gang has changed their tactics by filing a complaint with the SEC against their victim, MeridianLink, for not disclosing a breach within the required timeframe. This is an attempt to pressure MeridianLink to pay the ransom sooner. Businesses should consider having an incident response plan, deciding on paying … Read more

CISA and FBI Issue Warning About Rhysida Ransomware Double Extortion Attacks

November 16, 2023 at 08:12AM The U.S. Cybersecurity and Infrastructure Security Agency (CISA), the FBI, and MS-ISAC have issued an advisory about the Rhysida ransomware. The threat actors behind Rhysida use a ransomware-as-a-service model and target organizations in various sectors. They exploit VPNs, the Zerologon vulnerability, and phishing campaigns to gain access to networks. Rhysida … Read more

Ransomware gang files SEC complaint over victim’s undisclosed breach

November 15, 2023 at 09:04PM The ALPHV/BlackCat ransomware group has filed a complaint with the U.S. Securities and Exchange Commission (SEC) against software company MeridianLink for not disclosing a cyberattack within the four-day rule. The ransomware group threatened to leak stolen data unless a ransom was paid. MeridianLink confirmed the cyberattack and stated that it … Read more

BlackCat ransomware claims breach of healthcare giant Henry Schein

November 2, 2023 at 02:56PM Healthcare solutions provider Henry Schein has experienced a cyberattack, with the BlackCat ransomware gang claiming to have breached the company’s network and stolen 35 TB of data. While some business operations were disrupted, Henry Schein One practice management software remains unaffected. The company has notified law enforcement and hired cybersecurity … Read more

October 9, 2023 at 05:35PM – ALPHV ransomware gang claims attack on Florida circuit court

October 9, 2023 at 05:35PM The ALPHV (BlackCat) ransomware gang recently attacked state courts in Northwest Florida. Personal details of employees, including judges, were acquired. The gang claims to have a network map of the court’s systems and threatens to leak stolen data online if their demands are not met. The court has not confirmed … Read more