Thursday, April 16, 2026
HomeRansomware

Ransomware

Threat Actors Using RDP Credentials To Deploy Cephalus Ransomware

A new ransomware group known as Cephalus has emerged, striking fear into organizations worldwide. First detected in mid-June 2025, Cephalus operates with a laser-focused motive: pure financial gain. What sets them apart is their reliance on stolen Remote Desktop Protocol (RDP) credentials to infiltrate networks,...

Cybersecurity Pros Accused Of Launching ALPHV BlackCat Ransomware Attacks On U.S. Businesses

Two self-proclaimed experts in digital defense stand accused of orchestrating some of the most devastating ransomware assaults on American companies. Federal prosecutors in the Southern District of Florida unsealed an indictment on October 3, 2025, charging Ryan Clifford Goldberg of Watkinsville, Georgia, and Kevin...

Conti Group Operative Responsible For Deploying Ransomware Extradited To The U.S.

A Ukrainian national accused of playing a key role in the infamous Conti ransomware operations has been extradited to the United States. Oleksii Oleksiyovych Lytvynenko, 43, appeared in federal court in the Middle District of Tennessee following his transfer from Ireland, where he had resided...

Volvo Group Reports Data Breach Following HR Supplier Ransomware Attack

Volvo Group has alerted employees that a cyber incident affecting its human resources software supplier, Miljödata, may have exposed personal information of some staff members. The notification comes after Miljödata discovered a ransomware attack that began on August 20, 2025, and confirmed unauthorized access...

Royal Enfield Reportedly Targeted in Ransomware Attack, Hackers Claim to Have Encrypted Data

In what appears to be a significant cybersecurity incident, threat actors have claimed a full compromise of Royal Enfield’s internal systems. The group behind the alleged intrusion has posted a “Breach Notice” on an underground forum, asserting that they have encrypted all servers and...

US Confirms Takedown of BlackSuit Ransomware Behind Attacks on 450+ Organizations

The U.S. Homeland Security Investigations (HSI),coordination with international law enforcement agencies, has successfully dismantled the critical infrastructure of BlackSuit ransomware, marking a significant victory against one of the world's most dangerous cybercriminal operations. The coordinated takedown, dubbed Operation Checkmate, has seized servers, domains, and...