home.social

#ransomware — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #ransomware, aggregated by home.social.

  1. 🚨New ransom group blog posts!🚨

    Group name: incransom
    Post title: myglobal.com
    Info: cti.fyi/groups/incransom.html

    Group name: insomnia
    Post title: Maglin, Miskiv & Associates
    Info: cti.fyi/groups/insomnia.html

    Group name: nightspire
    Post title: Transportes Montejo S.A.S.
    Info: cti.fyi/groups/nightspire.html

    Group name: nightspire
    Post title: Truckworx
    Info: cti.fyi/groups/nightspire.html

    Group name: nightspire
    Post title: Easyoga
    Info: cti.fyi/groups/nightspire.html

    #ransomware #cti #threatintelligence #cybersecurity #infosec

  2. Node.js: Old Technique Makes a Comeback

    A resurgence in Node.js abuse has been observed since February 2026, targeting government departments, technology companies, and hotels. Attackers leverage the legitimate, signed node.exe binary to execute malicious JavaScript payloads, evading signature-based detection. In one intrusion at an Asian technology company, attackers downloaded the official Node.js installer after repeated payload blocks and used it to run an implant communicating with Ethereum blockchain gateways via EtherHiding techniques. The same threat actors compromised a U.S. fintech firm, deploying the Rust-based C2Looper backdoor linked to ransomware operations. Multiple attacks involved ModeloRAT, associated with initial access broker Woodgnat, connected to ransomware families including Qilin, Interlock, Rhysida, Akira, 8Base, Black Basta, and Embargo. Attackers employ ClickFix techniques for initial access and combine living-off-the-land tools with commodity malware.

    Pulse ID: 6a996ed3562f794a642feaaf
    Pulse Link: otx.alienvault.com/pulse/6a996
    Pulse Author: AlienVault
    Created: 2026-09-03 12:57:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #8Base #Akira #Asia #BackDoor #BlackBasta #BlockChain #CyberSecurity #EtherHiding #Government #InfoSec #Java #JavaScript #Malware #Nodejs #OTX #OpenThreatExchange #RAT #RansomWare #Rhysida #Rust #bot #AlienVault

  3. Node.js: Old Technique Makes a Comeback

    Indicators extracted from public reporting. Source: zscaler.com/blogs/security-res

    Pulse ID: 6a996082aa9b2cfffc43b73d
    Pulse Link: otx.alienvault.com/pulse/6a996
    Pulse Author: CyberHunter_NL
    Created: 2026-09-03 11:56:50

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #CyberSecurity #GitHub #HTTP #HTTPS #InfoSec #Nodejs #OTX #OpenThreatExchange #RCE #RansomWare #Zscaler #bot #CyberHunter_NL

  4. Dropbox Accounts Breached via Lenovo Identity Provider SSO Flaw

    Dropbox confirmed that attackers accessed approximately 5,000 accounts by exploiting a flaw in Lenovo's email verification process to bypass authentication. The breach allowed unauthorized parties to view and download user files by linking fraudulent Lenovo IDs to existing Dropbox accounts.

    ****
    #cybersecurity #infosec #incident #ransomware
    beyondmachines.net/event_detai

  5. AI Agents Execute Full Ransomware Attack in Under 10 Hours

    Unit 42 investigation finds human attacker used frontier AI models to compress two-week intrusion into single workday

    pulseofnations.lol/ai-agents-e

    #AgenticAi #AI #Cybersecurity #FrontierModels #Ransomware #Unit42

  6. AI Agents Execute Full Ransomware Attack in Under 10 Hours

    Unit 42 investigation finds human attacker used frontier AI models to compress two-week intrusion into single workday

    pulseofnations.lol/ai-agents-e

    #AgenticAi #AI #Cybersecurity #FrontierModels #Ransomware #Unit42

  7. AI Agents Execute Full Ransomware Attack in Under 10 Hours

    Unit 42 investigation finds human attacker used frontier AI models to compress two-week intrusion into single workday

    pulseofnations.lol/ai-agents-e

    #AgenticAi #AI #Cybersecurity #FrontierModels #Ransomware #Unit42

  8. AI Agents Execute Full Ransomware Attack in Under 10 Hours

    Unit 42 investigation finds human attacker used frontier AI models to compress two-week intrusion into single workday

    pulseofnations.lol/ai-agents-e

    #AgenticAi #AI #Cybersecurity #FrontierModels #Ransomware #Unit42

  9. AI Agents Execute Full Ransomware Attack in Under 10 Hours

    Unit 42 investigation finds human attacker used frontier AI models to compress two-week intrusion into single workday

    pulseofnations.lol/ai-agents-e

    #AgenticAi #AI #Cybersecurity #FrontierModels #Ransomware #Unit42