Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000

A group of self-proclaimed “ransom busters” has claimed responsibility for hacking into servers used by notorious ransomware gangs, but their motives have raised more questions than answers. The hackers, who operate under the name Ransom Busters, are seeking to extort substantial sums from victims they claim were previously targeted by these same ransomware groups. Ransomware … Read more

Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets

Cloud Security Breach Exposes Sensitive Data as Attackers Exploit MLflow SSRF Flaw A critical vulnerability in the popular machine learning (ML) platform MLflow has been exploited by attackers, compromising sensitive data stored on cloud services. The flaw, a Server-Side Request Forgery (SSRF) bug, allows malicious actors to access and steal cloud credentials and secrets, potentially … Read more

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Microsoft’s AI-powered assistant, Copilot Personal, has a vulnerability that could allow hackers to extract sensitive data from connected applications with just one click. This flaw, discovered by researchers, is particularly concerning as it exploits a common issue in identity exposure – where an attacker gains access to a user’s digital identity and uses it to … Read more

Silent ‘TwinLoot’ Cyber Threat Operates Entirely From Microsoft’s Cloud

Microsoft’s Cloud Services Hijacked by Stealthy ‘TwinLoot’ Malware Framework A sinister malware framework, dubbed “TwinLoot” by its discoverers, has been found operating entirely from within Microsoft’s cloud services. This Python-based framework uses various Microsoft tools to disguise its malicious activity as legitimate traffic, making it a masterclass in stealth and sophistication. Researchers at Ontinue Cyber … Read more

‘Ransom Busters’: Ransomware Actor Poses as Incident-Recovery Service

Ransomware Affiliate Poses as Incident-Recovery Service, Luring Victims with False Promises of Data Recovery A sophisticated and brazen tactic has been uncovered by cybersecurity researchers, where a ransomware affiliate is posing as an incident-recovery service to lure victims into paying them for help in recovering their stolen data. Dubbed “Ransom Busters,” this malicious entity claims … Read more

CISA: Windows Task Host flaw now exploited by ransomware gangs

A Critical Windows Flaw is Now Being Exploited by Ransomware Gangs, CISA Warns The US Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that a previously patched high-severity vulnerability in Windows Task Host is being exploited by ransomware gangs. This flaw, tracked as CVE-2025-60710, allows attackers to gain SYSTEM privileges and take control of unpatched … Read more

Your Controls Block Known Attacks. What About the Behavior?

A Critical Blind Spot in Cybersecurity Defenses Exposed by Recent Study The latest Blue Report from Picus Labs, a comprehensive analysis of enterprise cybersecurity defenses, has revealed a disturbing trend. Despite a slight improvement in prevention effectiveness, the report highlights a critical blind spot in our defenses against advanced threats. The study found that even … Read more

Clop created custom web shell for Windchill data theft attacks

A custom web shell, built specifically for PTC Windchill servers, has been discovered in recent data theft attacks linked to the notorious Clop ransomware gang. The web shell’s advanced features allow it to decrypt credentials, enumerate file repositories, and steal files with ease, making it a formidable tool in the hands of cyber attackers. The … Read more

‘Ransom Busters’: Ransomware Actor Poses as Incident-Recovery Service

Ransomware Actors Masquerade as Incident-Recovery Services, Targeting Victims with Fake Offers of Aid A new and disturbing trend has emerged in the world of ransomware, where attackers are posing as incident-recovery services to deceive victims into paying them again. The tactic, uncovered by researchers at GuidePoint Security, involves a malicious entity claiming to have infiltrated … Read more

Microsoft confirms outage affecting search in Microsoft 365 apps

A critical search function outage has left millions of users unable to find content within Microsoft 365 apps, including Outlook on the web and OneDrive. According to an internal incident report seen by CyberNews.work, a recent deployment introduced a resource utilization issue that led to the problem. The company has already developed a fix and … Read more