Ransomware kept its grip on organizations through the second quarter of 2026, and the headline number barely moved. What changed underneath that number is…
Tag: ransomware
Akira Ransomware Affiliate Rebooted Into Safe Mode to Dodge EDR and Broke Its Own Attack
An affiliate of the Akira ransomware operation attempted a novel technique to blind endpoint defences during a recent intrusion, rebooting a compromised…
UK Cyber Attacks Jump 26% Year-on-Year as Ransomware Activity Doubles Globally
UK organisations were hit by an average of 1,597 cyber attacks per week each in July 2026, a 26% increase year-on-year, according to new data from Check…
Akira Affiliate Crashes Ransomware After Attempting EDR Evasion
Huntress documents how a ransomware affiliate sabotaged its own attack with an anti-EDR effort
Storm-1175 Replaces Medusa With New StormEncryptor Ransomware
Microsoft says China-linked Storm-1175 is using a new ransomware called StormEncryptor, replacing Medusa in its latest attacks. Microsoft says…
Akira Ransomware Uses Windows Safe Mode to Shut Down EDR Before Launching Encryptor
Akira ransomware has added a new way to weaken Windows security before it tries to lock files. In a recent intrusion, an affiliate rebooted a compromised…
Akira Ransomware Reboots Windows Into Safe Mode to Disable EDR and Microsoft Defender
An Akira ransomware affiliate has been observed rebooting a compromised Windows host into Safe Mode with Networking to disable endpoint protection an…
Gunra Ransomware Uses Up to 100 ChaCha20 Threads to Rapidly Encrypt Linux Systems
Gunra ransomware has added a Linux encryptor to its arsenal, giving affiliates control over how they lock enterprise data. The command-line payload can…
Microsoft Warns DeadLock Ransomware Can Keep Operating After Servers Go Down
Microsoft warns DeadLock ransomware can recover after server takedowns by using decentralized services to maintain victim communications and extortion.
Ransomware Attacks Fall as Business Defenses Improve
Ransomware has long been one of the biggest cyber threats to businesses, often forcing victims into costly downtime and data loss. Recently, analysts have…
AnMed Health Ransomware Attack Highlights Growing Patient Safety Risks in Healthcare
AnMed Health is the latest healthcare organization to be disrupted by a ransomware-related cybersecurity incident after having to cancel procedures and…
New Ransomware Targets AI Model Weights but Fails to Collect Ransom
An updated ransomware campaign is targeting an important but often overlooked asset in artificial intelligence environments: trained AI models and their…
Eclipse Ransomware Launches RaaS Platform Targeting Windows, Linux, and ESXi Infrastructure
A threat actor operating under the handle EclipseSupport is actively promoting a new Ransomware-as-a-Service (RaaS) operation named Eclipse Ransomware on…
Ransomware Attack Explained: How It Works and How to Defend Against It (2026)
By HOC Team | Last updated: August 2026 | Read time: ~23 min At 2:07 AM on a…
US, South Korea Warn of Growing Gunra Ransomware Threat
U.S. and South Korean authorities warn about the growing Gunra ransomware threat as the operation expands its capabilities and affiliate network.
Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure
Gunra actors are using stealth to exfiltrate vast volumes of data from Microsoft services, US and Korean agencies have warned
July 2026 Cyber Threats Surge: Ransomware Attacks Double Year over Year as GenAI Data Exposure Widens
Key takeaways Weekly cyber attacks reached 2,336 per organization in July 2026, up 3% from June and 16% year over year Education remained the most…
Hackers Linked to China Install StormEncryptor Ransomware
Threat actor links to China Microsoft has revealed that a financially motivated hacker linked to China, called Storm-1175 has installed an earlier…
Akira ransomware scum blocked victim’s security tools – and broke their own encryptor
Gives a whole new meaning to Safe Mode
Gunra Ransomware Exploits Fortinet FortiOS, FortiProxy Flaws to Breach Networks
Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and…