BianLian ransomware
-
Coca-Cola says Fairlife ransomware attack halts U.S. dairy production
Coca-Cola said a ransomware attack on its Fairlife dairy subsidiary disrupted operations and temporarily stopped U.S. production. The company said product safety was not affected and Canadian operations were not hit.
-
U.S. county linked to $1 million payment in data theft extortion case
A case study linked a $1 million payment to a U.S. government entity after stolen files were threatened with release. The report pointed to Union County, Ohio, and described a data theft extortion scheme with no evidence of encryption.
-
Sysdig says AI agent ran ransomware attack through patched Langflow flaw
Sysdig says an AI agent carried out a ransomware attack from start to finish after exploiting a patched Langflow flaw, stealing credentials and encrypting a production database. The report says the case shows how exposed software and weak defaults can be chained automatically.
-
INTERPOL warns of surge in phishing, ransomware and scam centers across Asia and the South Pacific
INTERPOL says cybercrime has surged across Asia and the South Pacific, driven by phishing, ransomware and AI-enabled scams. The report cites more than 135,000 ransomware attacks in 2024 and rising losses from organized fraud networks.
-
INC ransomware claims 830 victims since 2023, researchers say
INC ransomware has emerged as one of 2026’s most active cybercrime groups, with researchers linking it to 830 victims since 2023 and more than 120 incidents in the first quarter of this year.
-
The Gentlemen ransomware linked to 478 claimed victims, new analysis says
A new analysis says The Gentlemen ransomware has claimed 478 victims since March 2025 and shifted in July to an independent model after using resources from other ransomware services.
-
Authorities dismantle AudiA6 crypto laundering service linked to ransomware proceeds
Authorities have dismantled the AudiA6 crypto laundering service, which investigators say moved more than $380 million for ransomware actors and other cybercriminals. The case led to arrests in Georgia and seizures across 11 countries.
-
Europol says it took down First VPN in cybercrime crackdown
European authorities shut down First VPN, a service used by cybercriminals to hide activity, and arrested the alleged administrator in Ukraine, Europol said. Officials also seized servers and domains and identified thousands of users linked to crime.
-
Microsoft disrupts malware-signing service tied to ransomware groups
Microsoft said it disrupted a malware-signing service that abused its Artifact Signing platform to issue more than 1,000 fraudulent certificates used by ransomware gangs and other cybercriminals.
-
Instructure reaches ransom agreement after Canvas data breach
Instructure said it reached an agreement with an unauthorized actor after a Canvas breach that exposed data tied to thousands of schools and universities, including about 275 million records. The company said stolen data was returned and no customers will be separately extorted.






