Ransomware Group Hardens Infrastructure via Smart Contracts
DeadLock uses Polygon smart contracts to make extortion infrastructure harder to disrupt, Microsoft reports.
Data breaches, ransomware payouts, and phishing operations rarely make the news until the damage is already done. This is where Xploitwire tracks the attackers — who they are, how they got in, and what it means for the organizations and people caught in the blast radius.
DeadLock uses Polygon smart contracts to make extortion infrastructure harder to disrupt, Microsoft reports.
Wesco confirms a cybersecurity incident after ExfilSquad claims theft of 2.6M records from its CRM environment.
A momentary face-swap failure helped Spanish police identify a man accused of obtaining digital certificates under stolen identities.
A Ceva Logistics data breach affecting European clients shows how supply chain attacks ripple outward.
Microsoft says China-linked Storm-1175 shifts from Medusa to the new StormEncryptor ransomware, likely via N-central flaw CVE-2026-18577.
Microsoft tracks Storm-1175's shift to StormEncryptor, following exploitation of an N-central flaw.
North Korea's Kimsuky group is building offline AI tools to automate malware and phishing, a Genians report says.
UK court sentences 20-year-old to two years for blackmail and sextortion targeting 117 teen victims.
A malicious VS Code extension pack targets developers, exfiltrating wallets, credentials, and API keys via Telegram.
Cyber CrimeNew Jersey and Alabama join at least 12 states confirmed or linked to water system cyberattacks.
CERT.PL details how a private APN pivot enabled destructive attacks on a second energy facility.
IEH Corporation disclosed a phishing attack compromising employee emails, potentially exposing sensitive defense-related data.
Threat actors are bypassing standard enterprise security by using vishing attacks to compromise personal mobile devices.
A server breach at Unlimited Technology Systems has exposed the personal and medical records of 3,803,750 individuals.
A Scottish health trust is investigating reports that staff improperly accessed the medical files of a recently deceased child.
A newly identified Go-based malware targets macOS users by leveraging social engineering to steal credentials and crypto assets.
Ransomware incident counts climbed in July as attackers shifted focus toward financial, technology, and healthcare sectors.
Recent investigations reveal how attackers leverage legitimate accounts and blockchain data to execute sophisticated financial fraud.
A sophisticated phishing campaign uses adversary-in-the-middle tactics to compromise Microsoft 365 accounts for financial espionage.
Google Threat Intelligence Group links the retired BlackFile extortion brand to the active Redact group through shared infrastructure.