Home/Blog/Ransomware

Ransomware

Ransomware attacks continue to evolve with double-extortion tactics and targeted enterprise campaigns. This section analyzes ransomware groups, attack patterns, and defensive strategies CISOs must understand.

90 articles

MBM Law Ransomware Attack: Disruption by Dragonforce (July 2026)
ransomware

MBM Law Ransomware Attack: Disruption by Dragonforce (July 2026)

MBM Law, a South Carolina-based law firm, suffered a ransomware attack attributed to the threat actor dragonforce. The incident resulted in operational disruption and a ransomware claim against the firm.

Aug 1, 20265 min read
Read More
L3Harris Ransomware Attack: Kyber Group Disrupts US Operations (July 2026)
ransomware

L3Harris Ransomware Attack: Kyber Group Disrupts US Operations (July 2026)

L3Harris, a US-based aerospace and defense technology company, suffered operational disruption following a ransomware attack attributed to Kyber Group. The incident targeted US operations and was publicly claimed by the threat actor.

Jul 31, 20265 min read
Read More
Tong Kong E & E Sdn Bhd Ransomware Attack: Black X Compromises Sensitive Data (July 2026)
ransomware

Tong Kong E & E Sdn Bhd Ransomware Attack: Black X Compromises Sensitive Data (July 2026)

Tong Kong E & E Sdn Bhd, a Malaysian manufacturing company, suffered a ransomware attack by Black X, resulting in the exposure of customer and banking records. The breach poses significant financial and reputational risks.

Jul 30, 20265 min read
Read More
Della Casa Group AG Ransomware: 240GB Client & Project Data Compromised (July 2026)
ransomware

Della Casa Group AG Ransomware: 240GB Client & Project Data Compromised (July 2026)

Della Casa Group AG suffered a ransomware attack attributed to incransom, resulting in the compromise of 86,332 files and 15,359 folders containing sensitive client, financial, and project data. The breach involved approximately 240 GB of data and was publicly claimed by the threat actor.

Jul 29, 20265 min read
Read More
Thai Seng International Co. Ltd Ransomware: nightspire Encrypts Client Data (July 2026)
ransomware

Thai Seng International Co. Ltd Ransomware: nightspire Encrypts Client Data (July 2026)

Thai Seng International Co. Ltd suffered a ransomware attack by the nightspire group, resulting in the encryption of administration and marketing data. Client information was compromised and business operations were disrupted.

Jul 28, 20265 min read
Read More
iw steelTEC Makine San. ve Tic. A.,Ş. Ransomware: Doommageddon Data Leak (July 2026)
ransomware

iw steelTEC Makine San. ve Tic. A.,Ş. Ransomware: Doommageddon Data Leak (July 2026)

Turkish manufacturer iw steelTEC Makine San. ve Tic. A.,Ş. suffered a ransomware attack by Doommageddon, resulting in a 100 GB data leak. The group set a ransom deadline for March 8, 2026.

Jul 27, 20265 min read
Read More
Jubilee Jobs Ransomware: Qilin Disrupts Nigerian Professional Services (July 2026)
ransomware

Jubilee Jobs Ransomware: Qilin Disrupts Nigerian Professional Services (July 2026)

Jubilee Jobs, a Nigerian professional services firm, suffered a high-severity ransomware attack by the Qilin group. The incident resulted in data encryption and significant disruption to company systems.

Jul 26, 20265 min read
Read More
Bank of Baroda Ransomware: 1TB of Customer Data Exposed (July 2026)
ransomware

Bank of Baroda Ransomware: 1TB of Customer Data Exposed (July 2026)

Bank of Baroda suffered a critical ransomware attack by the Triple X group, exposing up to 1TB of sensitive customer data. The breach includes banking records, netbanking access details, and identity documents, impacting hundreds of thousands of customers.

Jul 25, 20265 min read
Read More
Record Go Alquiler Ransomware Attack: Play Group Disrupts Hospitality Operations (July 2026)
ransomware

Record Go Alquiler Ransomware Attack: Play Group Disrupts Hospitality Operations (July 2026)

Record Go Alquiler, a hospitality company in Argentina, suffered a ransomware attack by the Play group. System access was blocked and data encrypted, causing significant operational disruption.

Jul 24, 20265 min read
Read More
Recsa Ransomware: Qilin Group Claims Attack on Costa Rican Firm (July 2026)
ransomware

Recsa Ransomware: Qilin Group Claims Attack on Costa Rican Firm (July 2026)

Recsa, a Costa Rican organization, was targeted by the Qilin ransomware group, resulting in unauthorized access and file encryption. The incident was publicly claimed by Qilin, though Recsa has not confirmed the breach.

Jul 23, 20265 min read
Read More
Langflow Ransomware: ENCFORGE Targets AI Model Files via RCE (July 2026)
ransomware

Langflow Ransomware: ENCFORGE Targets AI Model Files via RCE (July 2026)

Langflow suffered a critical ransomware attack exploiting CVE-2025-3248, allowing the JADEPUFFER group to deploy ENCFORGE and encrypt AI model files, vector indexes, and training datasets. The attack leveraged a remote code execution flaw to disrupt AI infrastructure with no evidence of data exfiltration.

Jul 22, 20265 min read
Read More
SonicWall Ransomware: Zero-Day Exploitation of SMA1000 Appliances (June 2026)
ransomware

SonicWall Ransomware: Zero-Day Exploitation of SMA1000 Appliances (June 2026)

SonicWall customers experienced ransomware attacks after threat actors exploited two critical zero-day vulnerabilities in SMA1000 appliances. At least seven organizations suffered root compromise and credential theft.

Jul 21, 20265 min read
Read More