Threat category //
CoinbaseCartel and BlackShrantac launch major attacks on Sept 15 & 17, 2025, hitting multiple industries worldwide and exfiltrating massive sensitive data.
Arrest of XSS admin “Toha” disrupts Russian cybercrime, leading to the creation of rehubcom.pro, a new underground forum reshaping the dark web ecosystem
Hacker N4t0x uses SpainData tool to leak personal data of Spanish politicians, police, and intelligence officers, exposing families and raising privacy risks.
Discover ransomware & breach activity from Sep 29–Oct 5 2025: major Medusa & Qilin hits on healthcare, finance, and industry, plus 103 new infostealer packages.
Koi Security reports the first malicious MCP server hidden in a fake Postmark-MC NPM package, highlighting new risks in software supply chain attacks.
International law enforcement dismantles BlackSuit, heir of Royal/Conti, after causing $500M in damages through double-extortion ransomware operations.
Kryptos ransomware group debuts on Oct 8, 2025, launching coordinated attacks across the US, Australia, and Canada targeting key professional sectors.
Emerging ransomware groups Nasirsecurity and Radiant identified via breach.house—new actors driving data-centric extortion across multiple industries.
The Gentlemen, a new ransomware group, launched on 09/09/2025, linked to 32 attacks across multiple sectors worldwide, highlighting the growing global threat.