logo

Ransomware ISAC Blog

ID: 705d720a-c776-5b41-99dc-425bf6b836df

STIX ID: identity--705d720a-c776-5b41-99dc-425bf6b836df

Feed Type: rss

Earliest post: 2025-10-20

Latest post: 2026-07-31

Community-driven insights, threat research, and operational guidance on ransomware trends, incident response best practices, mitigation strategies, and collaborative defense against extortion-based attacks.

01/01/2020
08/08/2026
Title Date Published Describes IncidentAuthorVisible
Weaponizing Exposed Data2026-07-31True[email protected] (Mannie W)True
The Telegram Malware Ecosystem2026-07-27True[email protected] (Manuel Boll)True
Cl0p Exploitation of PTC Windchill & FlexPLM (CVE-2026-12569)2026-07-22True[email protected] (Brandon Parsons)True
The Fox Tempest Question2026-07-20True[email protected] (Alex Necula)True
MuddyWater: ClickFix to Telegram & PatchAgent Backdoor2026-07-15True[email protected] (Ransom-ISAC Research Team)True
Kali365 PhaaS Kit: OAuth Device-Code Phishing Enables MFA-Satisfied Token Theft2026-07-03True[email protected] (Ransom-ISAC Research Team)True
Kairos Ransomware: Data-Extortion Case Study Involving a U.S. Government Entity2026-07-03True[email protected] (Rakesh Krishnan)True
When Three Threats Meet One Inbox Against Japan2026-06-25True[email protected] (Md. Azim Uddin & Abdullah Al Mamun)True
ShinyHunters: Silent Malware as a Service (MaaS)2026-05-26True[email protected] (Ransom-ISAC Research Team)True
The Gentlemen Leak Analysis (Part 2) — JA456 Follow-on2026-05-26True[email protected] (Ransom-ISAC Research Team)True
The Gentlemen Ransomware Group — Leak Analysis2026-05-15True[email protected] (Ransom-ISAC Research Team)True
Critical PAN-OS Vulnerability Demands Immediate Attention2026-05-06True[email protected] (Reyben Cortes)True
Dragon in the Kernel — Part II2026-04-29True[email protected] (Alex Necula & Ellis Stannard)True
DragonBreath: Dragon in the Kernel2026-04-22True[email protected] (Alex Necula & Ellis Stannard)True
0APT Hacked - And Then Got Hacked Back2026-04-14True[email protected] (Corsin Camichel, Dani [Varys] Z, Ellis Stannard, Eric Taylor, Katya Kandratovich)True
Iran-linked hackers access U.S. Water Utilities East Coast - Advisory2026-04-09True[email protected] (Reyben Cortes)True
Supply Chain Confidence: What Every Organisation Needs to Know2026-04-03True[email protected] (Ransom-ISAC Research Team)True
You’re Driving Me Crazy: Analysing and Detecting BYOVD2026-04-03True[email protected] (Alex Necula)True
New Tool in the Wild: Bluekit Dashboard (Beta)2026-03-31True[email protected] (Ransom-ISAC Research Team)True
Contagious Interview: VS Code to RAT2026-03-16True[email protected] (François-Julien Alcaraz & Yashraj Solanki)True
VEN0m Ransomware: DFIR Analysis, Detection Engineering & Key Recovery2026-02-26True[email protected] (Eric Taylor)True
Ransomware in Healthcare: Three Years of Insight2026-02-19True[email protected] (Jeffrey Bell)True
Ransomware Leak Collection & Analysis2026-02-06True[email protected] (Apurv Singh Gautam)True
Cross-Chain TxDataHiding Crypto Heist: A Very (Very) Chainful Process (Part 4)2025-12-08True[email protected] (Nick Smart and Andrii Sovershennyi)True
Cross-Chain TxDataHiding Crypto Heist: A Very Chainful Process (Part 3)2025-11-13True[email protected] (Yashraj Solanki)True
Cross-Chain TxDataHiding Crypto Heist: A Very Chainful Process (Part 2)2025-10-27True[email protected] (Ellis Stannard)True
Cross-Chain TxDataHiding Crypto Heist: A Very Chainful Process (Part 1)2025-10-20True[email protected] (Ellis Stannard)True

1–27 of 27