Anubis Ransomware Targets 91 Companies Through Citrix Flaw Bypassing MFA Security

Anubis ransomware exploits a Citrix memory vulnerability to extract session tokens and bypass MFA protection for 91 organizations globally.
Ransomware incidents and attacks

Anubis ransomware exploits a Citrix memory vulnerability to extract session tokens and bypass MFA protection for 91 organizations globally.

On July 1, 2026, Sysdig's Threat Research Team published findings on JADEPUFFER, a ransomware operation that demonstrates how AI agents can autonomously...

A Mac clipboard manager imposter discovered in July 2026 steals passwords and browser credentials through sophisticated credential validation techniques.

Remus Stealer follows the familiar playbook of credential-stealing malware, using established evasion and distribution tactics refined over years of infostealer evolution.

Ransomware systems now operate autonomously, making targeting and encryption decisions without human oversight, powered by machine learning that adapts to each victim.

Modern ransomware gangs operate with corporate hierarchies, departments, and formal governance—making them harder to disrupt than ever before.

Active exploitation of SimpleHelp, Windows, and FortiGate exposes over 430,000 systems to credential theft and remote access.

Ransomware operators are targeting enterprise vulnerabilities with increasing sophistication, exploiting patching delays to gain network access and deploy encryption at scale.

Ransom extortion through file-locking malware has hit major manufacturers, exposing the inadequacy of traditional backup and recovery strategies.

AhnLab V3 achieves 99%+ detection rates in Virus Bulletin testing, but "perfect detection" claims require scrutiny and verification.