
TA419 Phishing Campaign Impersonates AI Experts
A China-aligned espionage group, tracked as TA419, has been running credential phishing campaigns since July 2026.
Every Cybersecurity story tagged Ransomware groups and campaigns.

A China-aligned espionage group, tracked as TA419, has been running credential phishing campaigns since July 2026.

An international police operation dismantled the KillSec ransomware group, seizing servers and arresting key suspects including a 16-year-old.

A 16-year-old Romanian national was arrested in Alicante, Spain, as the suspected administrator of the KillSec ransomware group, part of a multinational operation.

Kaspersky researchers detail a 2026 attack where threat actors used a malicious Group Policy Object named PAYLOAD to disrupt a manufacturing firm.

A Black Kite study reveals manufacturing accounted for 22% of all ransomware victims from April 2025 to March 2026.

A new exploit kit called BlueMoon, which chains three recent zero-day vulnerabilities in Chrome and Windows, has been rapidly adopted by multiple Chinese threat groups.

Four espionage groups, including APT31, used the new BlueMoon exploit kit in late August and early September 2026.

A pro-Ukraine ransomware group named VantaCore is using custom malware to extort millions from Russian organizations.