<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Ransomware on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/ransomware/</link>
    <description>Recent content in Ransomware on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 25 Feb 2026 22:40:16 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/ransomware/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>RAMP Forum Seizure Fractures Ransomware Ecosystem</title>
      <link>https://cluster-site.onrender.com/posts/ramp-forum-seizure-fractures-ransomware-ecosystem/</link>
      <pubDate>Wed, 25 Feb 2026 21:14:21 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/ramp-forum-seizure-fractures-ransomware-ecosystem/</guid>
      <description>• Researchers suggest defenders monitor how these malicious groups re-form and leverage the useful threat intel to guide their next moves</description>
    </item>
    <item>
      <title>Marquis sues SonicWall over backup breach that led to ransomware attack</title>
      <link>https://cluster-site.onrender.com/posts/marquis-sues-sonicwall-over-backup-breach-that-led-to-ransomware-attack/</link>
      <pubDate>Wed, 25 Feb 2026 15:54:44 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/marquis-sues-sonicwall-over-backup-breach-that-led-to-ransomware-attack/</guid>
      <description>• Marquis sues SonicWall over backup breach that led to ransomware attack February 25, 2026 10:54 AM 0 Marquis Software Solutions has filed a lawsuit against SonicWall, accusing th</description>
    </item>
    <item>
      <title>Lazarus Group Picks a New Poison: Medusa Ransomware</title>
      <link>https://cluster-site.onrender.com/posts/lazarus-group-picks-a-new-poison-medusa-ransomware/</link>
      <pubDate>Tue, 24 Feb 2026 21:18:04 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/lazarus-group-picks-a-new-poison-medusa-ransomware/</guid>
      <description>• Cyberattacks &amp;amp; Data Breaches Cyber Risk Endpoint Security Threat Intelligence News Lazarus Group Picks a New Poison: Medusa Ransomware The North Korean threat group also leverage</description>
    </item>
    <item>
      <title>Lazarus Group Uses Medusa Ransomware in Middle East and U.S. Healthcare Attacks</title>
      <link>https://cluster-site.onrender.com/posts/lazarus-group-uses-medusa-ransomware-in-middle-east-and-u.s.-healthcare-attacks/</link>
      <pubDate>Tue, 24 Feb 2026 11:52:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/lazarus-group-uses-medusa-ransomware-in-middle-east-and-u.s.-healthcare-attacks/</guid>
      <description>• Lazarus Group Uses Medusa Ransomware in Middle East and U.S. • Healthcare Attacks The North Korea-linkedLazarus Group(aka Diamond Sleet and Pompilus) has been observed using Medu</description>
    </item>
    <item>
      <title>North Korean Lazarus group linked to Medusa ransomware attacks</title>
      <link>https://cluster-site.onrender.com/posts/north-korean-lazarus-group-linked-to-medusa-ransomware-attacks/</link>
      <pubDate>Tue, 24 Feb 2026 11:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/north-korean-lazarus-group-linked-to-medusa-ransomware-attacks/</guid>
      <description>• North Korean Lazarus group linked to Medusa ransomware attacks February 24, 2026 06:00 AM 0 North Korean state-backed hackers associated with the Lazarus threat group are targeti</description>
    </item>
    <item>
      <title>Mississippi Hospital System Closes All Clinics After Ransomware Attack</title>
      <link>https://cluster-site.onrender.com/posts/mississippi-hospital-system-closes-all-clinics-after-ransomware-attack/</link>
      <pubDate>Mon, 23 Feb 2026 10:29:13 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/mississippi-hospital-system-closes-all-clinics-after-ransomware-attack/</guid>
      <description>• A ransomware attack forced the University of Mississippi Medical Center to close all of its roughly three dozen clinics around the state and cancel elective procedures for a seco</description>
    </item>
    <item>
      <title>Japanese tech giant Advantest hit by ransomware attack</title>
      <link>https://cluster-site.onrender.com/posts/japanese-tech-giant-advantest-hit-by-ransomware-attack/</link>
      <pubDate>Fri, 20 Feb 2026 18:30:44 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/japanese-tech-giant-advantest-hit-by-ransomware-attack/</guid>
      <description>• Japanese tech giant Advantest hit by ransomware attack February 20, 2026 01:30 PM 0 Advantest Corporation disclosed that its corporate network has been targeted in a ransomware a</description>
    </item>
    <item>
      <title>In Other News: Ransomware Shuts US Clinics, ICS Vulnerability Surge, European Parliament Bans AI</title>
      <link>https://cluster-site.onrender.com/posts/in-other-news-ransomware-shuts-us-clinics-ics-vulnerability-surge-european-parliament-bans-ai/</link>
      <pubDate>Fri, 20 Feb 2026 15:30:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/in-other-news-ransomware-shuts-us-clinics-ics-vulnerability-surge-european-parliament-bans-ai/</guid>
      <description>• SecurityWeek&amp;rsquo;s cybersecurity news roundup provides a concise compilation of noteworthy stories that might have slipped under the radar.We provide a valuable summary of stories th</description>
    </item>
    <item>
      <title>Mississippi medical center closes all clinics after ransomware attack</title>
      <link>https://cluster-site.onrender.com/posts/mississippi-medical-center-closes-all-clinics-after-ransomware-attack/</link>
      <pubDate>Fri, 20 Feb 2026 11:50:14 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/mississippi-medical-center-closes-all-clinics-after-ransomware-attack/</guid>
      <description>• The University of Mississippi Medical Center (UMMC) closed all its clinic locations statewide on Thursday following a ransomware attack. • UMMC has over 10,000 employees and, as</description>
    </item>
    <item>
      <title>Chip Testing Giant Advantest Hit by Ransomware</title>
      <link>https://cluster-site.onrender.com/posts/chip-testing-giant-advantest-hit-by-ransomware/</link>
      <pubDate>Fri, 20 Feb 2026 09:31:29 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/chip-testing-giant-advantest-hit-by-ransomware/</guid>
      <description>• Japanese chip testing giant Advantest Corporation (TSE: 6857) has been targeted in a ransomware attack.Advantest makes automatic test equipment for the semiconductor industry. •</description>
    </item>
    <item>
      <title>Ransomware, resilience, and the endpoint blind spot: What CIOs must fix now</title>
      <link>https://cluster-site.onrender.com/posts/ransomware-resilience-and-the-endpoint-blind-spot-what-cios-must-fix-now/</link>
      <pubDate>Thu, 19 Feb 2026 20:48:01 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/ransomware-resilience-and-the-endpoint-blind-spot-what-cios-must-fix-now/</guid>
      <description>• Ransomware, resilience, and the endpoint blind spot: What CIOs must fix now As ransomware locks users out of their devices, recovery speed becomes the true measure of digital res</description>
    </item>
    <item>
      <title>Telegram channels expose rapid weaponization of SmarterMail flaws</title>
      <link>https://cluster-site.onrender.com/posts/telegram-channels-expose-rapid-weaponization-of-smartermail-flaws/</link>
      <pubDate>Wed, 18 Feb 2026 16:27:38 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/telegram-channels-expose-rapid-weaponization-of-smartermail-flaws/</guid>
      <description>• SmarterMail CVE-2026-24423 and CVE-2026-23760 enable remote code execution and auth bypass. • Attackers weaponized these flaws within days of disclosure, sharing exploits on Tele</description>
    </item>
    <item>
      <title>Man Linked to Phobos Ransomware Arrested in Poland</title>
      <link>https://cluster-site.onrender.com/posts/man-linked-to-phobos-ransomware-arrested-in-poland/</link>
      <pubDate>Tue, 17 Feb 2026 12:54:34 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/man-linked-to-phobos-ransomware-arrested-in-poland/</guid>
      <description>• A 47-year-old man arrested by police in Poland for allegedly being involved in cybercriminal activities has been linked to the Phobos ransomware operation.According to Poland&amp;rsquo;s C</description>
    </item>
    <item>
      <title>Poland arrests suspect linked to Phobos ransomware operation</title>
      <link>https://cluster-site.onrender.com/posts/poland-arrests-suspect-linked-to-phobos-ransomware-operation/</link>
      <pubDate>Tue, 17 Feb 2026 11:31:37 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/poland-arrests-suspect-linked-to-phobos-ransomware-operation/</guid>
      <description>• Poland arrests suspect linked to Phobos ransomware operation February 17, 2026 06:31 AM 0 Polish police have detained a 47-year-old man suspected of ties to the Phobos ransomware</description>
    </item>
    <item>
      <title>Washington Hotel in Japan discloses ransomware infection incident</title>
      <link>https://cluster-site.onrender.com/posts/washington-hotel-in-japan-discloses-ransomware-infection-incident/</link>
      <pubDate>Mon, 16 Feb 2026 21:10:38 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/washington-hotel-in-japan-discloses-ransomware-infection-incident/</guid>
      <description>• Washington Hotel in Japan discloses ransomware infection incident February 16, 2026 04:10 PM 0 The Washington Hotel brand in Japan has announced that that its servers were compro</description>
    </item>
    <item>
      <title>9th February - Threat Intelligence Report</title>
      <link>https://cluster-site.onrender.com/posts/9th-february-threat-intelligence-report/</link>
      <pubDate>Mon, 09 Feb 2026 12:50:16 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/9th-february-threat-intelligence-report/</guid>
      <description>• Conpet pipeline attack disrupted IT but not operations. • Qilin ransomware group claimed responsibility. • Check Point Harmony protects against this threat. • Report covers recen</description>
    </item>
    <item>
      <title>Please Don&#39;t Feed the Scattered Lapsus ShinyHunters</title>
      <link>https://cluster-site.onrender.com/posts/please-dont-feed-the-scattered-lapsus-shinyhunters/</link>
      <pubDate>Mon, 02 Feb 2026 16:15:16 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/please-dont-feed-the-scattered-lapsus-shinyhunters/</guid>
      <description>• Scattered Lapsus ShinyHunters (SLSH) uses harassment, threats, even swatting to extort firms. • They notify journalists and regulators, amplifying pressure beyond typical ransomw</description>
    </item>
    <item>
      <title>Sicarii Ransomware: Truth vs Myth</title>
      <link>https://cluster-site.onrender.com/posts/sicarii-ransomware-truth-vs-myth/</link>
      <pubDate>Wed, 14 Jan 2026 14:24:07 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/sicarii-ransomware-truth-vs-myth/</guid>
      <description>• JavaScript is disabled In order to continue, we need to verify that you&amp;rsquo;re not a robot. • This requires JavaScript. • Enable JavaScript and then reload the page.</description>
    </item>
    <item>
      <title>Ransomware Actors Exploit Unpatched SimpleHelp Remote Monitoring and Management to Compromise Utility Billing Software Provider</title>
      <link>https://cluster-site.onrender.com/posts/ransomware-actors-exploit-unpatched-simplehelp-remote-monitoring-and-management-to-compromise-utility-billing-software-provider/</link>
      <pubDate>Thu, 12 Jun 2025 14:29:54 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/ransomware-actors-exploit-unpatched-simplehelp-remote-monitoring-and-management-to-compromise-utility-billing-software-provider/</guid>
      <description>• Ransomware actors target unpatched SimpleHelp RMM to breach utility billing software provider customers. • Vulnerability CVE-2024-57727, a path traversal flaw, exploited in Simpl</description>
    </item>
    <item>
      <title>The cyber threat to Universities</title>
      <link>https://cluster-site.onrender.com/posts/the-cyber-threat-to-universities/</link>
      <pubDate>Wed, 12 Mar 2025 11:19:33 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/the-cyber-threat-to-universities/</guid>
      <description>• Universities face rising ransomware attacks targeting research data and student records. • Phishing campaigns exploit faculty credentials to gain network access. • Supply‑chain v</description>
    </item>
    <item>
      <title>The Cyber Threat to UK Business</title>
      <link>https://cluster-site.onrender.com/posts/the-cyber-threat-to-uk-business/</link>
      <pubDate>Wed, 12 Mar 2025 11:19:11 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/the-cyber-threat-to-uk-business/</guid>
      <description>• Ransomware remains the top threat, targeting critical UK business data. • Phishing campaigns exploit remote working, increasing credential theft. • Supply‑chain attacks grow, com</description>
    </item>
    <item>
      <title>The cyber threat to sports organisations</title>
      <link>https://cluster-site.onrender.com/posts/the-cyber-threat-to-sports-organisations/</link>
      <pubDate>Wed, 12 Mar 2025 11:18:10 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/the-cyber-threat-to-sports-organisations/</guid>
      <description>• Sports organisations increasingly targeted by ransomware, phishing, and credential‑stealing attacks. • High‑profile events like the Olympics and World Cup attract sophisticated t</description>
    </item>
    <item>
      <title>Incident trends report (October 2018 - April 2019)</title>
      <link>https://cluster-site.onrender.com/posts/incident-trends-report-october-2018-april-2019/</link>
      <pubDate>Wed, 12 Mar 2025 11:10:04 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/incident-trends-report-october-2018-april-2019/</guid>
      <description>• Over 1,200 cyber incidents reported across 30 countries, highlighting rising ransomware activity. • Ransomware attacks surged 35%, with CryptoLocker variants targeting healthcare</description>
    </item>
    <item>
      <title>#StopRansomware: Medusa Ransomware</title>
      <link>https://cluster-site.onrender.com/posts/%23stopransomware-medusa-ransomware/</link>
      <pubDate>Tue, 11 Mar 2025 14:52:42 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/%23stopransomware-medusa-ransomware/</guid>
      <description>• Patch OS, software, firmware promptly to close known vulnerabilities across all systems. • Segment networks to limit lateral movement from infected devices and protect critical a</description>
    </item>
  </channel>
</rss>
