'Ransom Busters': Ransomware Actor Poses as Incident-Recovery Service

2026-08-18T14:51:34Zb14ca0a7705679f14b85e21f63d9277a778bd094a15bbadef4bf4b83a93717f2
CVE-2026-59310CVE-2026-62878AI-agent-hijackingAI-securityAndroidFortinetICS-OTMFA-bypassMicrosoft-Windows-DNSMiraiVMware-vCenteractively-exploited-vulnerabilitiesbotnetcloud-securitycredential-theftcritical-infrastructurecybercrimedata-breachiOSmalwaremobile-securityprompt-injectionransomwareremote-code-executionsupply-chainwater-systemszero-day

What happened

Dark Reading feed covering active ransomware and cybercrime campaigns, exploitation of critical infrastructure and enterprise software vulnerabilities, cloud and mobile threats, AI-agent attacks, data breaches, botnets, and emerging social-engineering techniques. The collection includes several severe or actively exploited issues, including VMware vCenter exploitation, Windows DNS Server RCE, Metabase zero-day attacks, Fortinet flaw exploitation with MFA bypass, modem and iOS exploit chains, and attacks against water systems and government organizations.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
darkreading
Record identifier
b14ca0a7705679f14b85e21f63d9277a778bd094a15bbadef4bf4b83a93717f2
Enrichment time
2026-08-18T14:51:34Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.