
TheGentlemen and Genesis Ransomware Hit Two US Clinics
TheGentlemen ransomware claimed Michigan Surgical Center while Genesis targeted Family Medical Associates of Raleigh, exposing PHI to double-extortion pressure.

TheGentlemen ransomware claimed Michigan Surgical Center while Genesis targeted Family Medical Associates of Raleigh, exposing PHI to double-extortion pressure.

DragonForce claimed Lebanon IT firm SETS Solutions and Mexican manufacturer Copamex, while Nitrogen posted U.S. real estate developer Pyramid in

KillSec ransomware posted an Indian teaching hospital and a Mexican insurance firm as victims, exposing patient data under India’s DPDPA

Nova ransomware publicly apologized and banned an affiliate for attacking Eriell Group, an Uzbekistan oilfield firm, violating the CIS safe

Qilin ransomware posted six victims across five countries over two days, including Nova Medical Products and MEISA Sines at Portugal’s

APT73 (Bashe), a LockBit-linked RaaS, posted Armenia’s elections.mia.gov.am as a victim, threatening voter registration and electoral administration data.

Sophos discovered a criminal ransomware framework using Claude Opus 4.5 and multi-agent AI pipelines to build and test 80 evasion-optimized

TheGentlemen ransomware posted Suburban Water, a US critical infrastructure water utility, among 14 victims across five sectors in a 46-minute

ShadowByt3$ ransomware claims unauthorized access to Cropwise, Syngenta’s precision agriculture platform, stealing GIS data, yield models, and API keys.

FortiGuard Labs documents PureLogs infostealer delivered via fake purchase order emails, using MSBuild.exe process hollowing to execute entirely in memory.
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.