Cybersecurity Professionals Sentenced for Secretly Working With BlackCat Ransomware

Three American cybersecurity professionals were sentenced for secretly conspiring with the ALPHV BlackCat ransomware operation, with one working as a double-agent negotiator who sold out his own clients’ confidential negotiating positions. Here’s what this genuinely alarming insider ransomware case reveals about vetting incident response vendors, plus this week’s fresh victims across manufacturing, retail, and construction.

Read more

Treasury Sanctions Iran’s Nobitex Exchange as Ransomware Gangs Bypass VPN MFA

The US Treasury sanctioned Nobitex, Iran’s largest crypto exchange, for facilitating ransomware-linked and terrorism-related payments, while separate research shows ransomware affiliates bypassing MFA on SonicWall VPN appliances. Here’s this week’s ransomware roundup covering both the cash-out and entry-point sides of the attack pipeline.

Read more

ShinyHunters-Linked Attackers Walked Into Salesforce Through Trust, Not Vulnerabilities

Microsoft mapped how ShinyHunters-linked attackers spent a year walking into corporate Salesforce environments through abused OAuth trust connections rather than any platform vulnerability. Combined with a ransomware attack on the Orleans Parish Sheriff’s Office and INC ransomware’s rise to 830 claimed victims, here’s this week’s ransomware landscape.

Read more