Attention: You are using an outdated browser, device or you do not have the latest version of JavaScript downloaded and so this website may not work as expected. Please download the latest software or switch device to avoid further issues.
| 8 Apr 2026 | |
| Written by Gabi Gerber | |
| Attacks & Threats |
| Security Operation Center, Hacking Topics |
Storm-1175 actors are running up-tempo campaigns to deliver Medusa ransomware, putting pressure on organizations to patch critical vulnerabilities faster.
In a blog post on Monday, Microsoft Threat Intelligence detailed how Storm-1175, a financially motivated cybercrime group, is conducting "high velocity ransomware campaigns" that typically exploit known vulnerabilities in the sweet spot for threat actors: the time between a vulnerability's initial disclosure and the widespread adoption of the patch. Microsoft also tied the exploitation of several zero-day vulnerabilities to the group. More here
Organizations don't need better vulnerability scanners; they need to know who owns their assets and has the authority and capacity to actually fix them. More...
Threat actors are now hiding payloads by using DNS TXT records and browser cache pre-fetching, making it tougher to spot… More...
A purported ad-blocker exfiltrates reams of sensitive information and benefits from having Google's stamp of approval de… More...
The "third-party[.]com" domain, commonly used as a documentation placeholder, has been observed serving a ClickFix lure … More...
Microsoft seized 50 websites and disabled more than 150 domains as part of a coordinated disruption effort against a phi… More...
Organizations don't need better vulnerability scanners; they need to know who owns their assets and has the authority and capacity to actually fix them. More...
Threat actors are now hiding payloads by using DNS TXT records and browser cache pre-fetching, making it tougher to spot… More...
A purported ad-blocker exfiltrates reams of sensitive information and benefits from having Google's stamp of approval de… More...
The "third-party[.]com" domain, commonly used as a documentation placeholder, has been observed serving a ClickFix lure … More...
Microsoft seized 50 websites and disabled more than 150 domains as part of a coordinated disruption effort against a phi… More...