Ransom & Dark Web Issues Week 1, August 2026
ASEC Blog publishes Ransom & Dark Web Issues Week 1, August 2026 South Korean Automotive Parts Manufacturer’s Internal Server Access and Database Offered for Sale Data of a Turkish HR Consulting Company Offered for Sale Gunra Ransomware Attack on a South Korean Heavy Equipment Parts
[Joint Cybersecurity Advisory] Operation Double Barrel (The Relationship Between a State-Sponsored Threat Actor and the Gunra Ransomware Group)
This technical analysis report was prepared as part of the joint cybersecurity advisory titled “Advisory on Cyberattacks Targeting Korean Citizens and Businesses by State-Sponsored Hacking Groups” issued by the Republic of Korea’s National Intelligence Service (NIS), National Police Agency (NPA), Korea Internet & Security Agency (KISA), and Financial Security Institute
Ransom & Dark Web Issues Week 5, July 2026
ASEC Blog publishes Ransom & Dark Web Issues Week 5, July 2026 Termite Ransomware Attack on a U.S. Nonprofit Healthcare Provider ShinyHunters Claims Data Leak Involving a Global Accounting and Consulting Firm The Gentlemen Ransomware Attack on a South Korean IT Software Distributor and Infrastructure
Ransom & Dark Web Issues Week 4, July 2026
ASEC Blog publishes Ransom & Dark Web Issues Week 4, July 2026 Source Code Collection of a South Korean Autonomous Robot Manufacturer Shared on a Cybercrime Forum Qilin Ransomware Attack on a Spanish Public Wastewater Management Organization RansomHouse Ransomware Attack on a Japanese Frozen Food
Ransom & Dark Web Issues Week 3, July 2026
ASEC Blog publishes Ransom & Dark Web Issues Week 3, July 2026 DragonForce Ransomware Attack on a Saudi Arabian Chemical Manufacturer AiLock Ransomware Attack on Japan’s Largest Taxi and Limousine Operator Cyberattack on Japan’s Largest Frozen Food Company Disrupts the Wider Food Supply Chain
June 2026 Security Issues in Korean & Global Financial Sector
Statistics on Malware Distributed to the Financial Sector In the June threat analysis for the financial sector, phishing was the most prevalent attack method in Attack Stage 1, while droppers/downloaders (distribution tools that download additional malware) were the most prevalent in Attack Stage 2. Infostealers were identified in the third
June 2026 Dark Web Threat Actor Trend Report
Note The June 2026 Dark Web Threat Actor Trend Report focuses on trends among threat actors—including hacktivists—operating on the deep web and dark web. It is noted that the accuracy of some information could not be verified. Major Issues In Malaysia, a series of website defacement and compromise incidents targeting
Ransom & Dark Web Issues Week 2, July 2026
ASEC Blog publishes Ransom & Dark Web Issues Week 2, July 2026 Saudi Arabian Medical Records Breach, For Sale on Cybercrime Forum Irish ICT Company Data Leaked, For Sale on Cybercrime Forum LeakNet Breach Targets US Healthcare Insurer, Shared on Cybercrime Forums
Statistical Report on Malware Targeting Windows Database Servers in Q2 2026
Contents The AhnLab SEcurity intelligence Center (ASEC) analyzed attack logs from the second quarter of 2026 targeting MS-SQL server and MySQL server installations on Windows. This report summarizes the damage status, attack status, and the classification of the malware and tools used in the attacks. Purpose and Scope The targets
Ransom & Dark Web Issues Week 1, July 2026
ASEC Blog publishes Ransom & Dark Web Issues Week 1, July 2026. Settra cliams data leak at Korean industrial firm’s foreign affiliate The Gentlemen launches ransomware attacks against Spanish defense, aerospace, and IT service firms DragonForce claims data theft targeting a South Korean smart factory

