CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Risky Bulletin: Microsoft takes down crime SaaS used by ransomware gangs

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6534

As cited

Copy frozen at (site build).

ransomware

Risky Bulletin: Microsoft takes down crime SaaS used by ransomware gangs

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

Risky Bulletin: Microsoft takes down crime SaaS used by ransomware gangs

Microsoft disrupted a malware-signing service used by ransomware gangs. A contractor working with the Cybersecurity and Infrastructure Security Agency (CISA) leaked sensitive government cloud keys. Vulnerability exploitation has become the primary network entry vector, and Drupal is preparing security updates for a highly critical vulnerability.

Why it matters: Ransomware operators lost access to a signing tool, reducing their ability to evade detection; organizations using GovCloud must assume exposed credentials require immediate rotation; security teams should prioritize patching as exploitation is now the leading attack path; Drupal administrators must apply the upcoming critical update when available.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

Risky Bulletin: Microsoft takes down crime SaaS used by ransomware gangs

Microsoft disrupted a malware-signing service used by ransomware gangs. A contractor working with the Cybersecurity and Infrastructure Security Agency (CISA) leaked sensitive government cloud keys. Vulnerability exploitation has become the primary network entry vector, and Drupal is preparing security updates for a highly critical vulnerability.

Why it matters: Ransomware operators lost access to a signing tool, reducing their ability to evade detection; organizations using GovCloud must assume exposed credentials require immediate rotation; security teams should prioritize patching as exploitation is now the leading attack path; Drupal administrators must apply the upcoming critical update when available.

VendorsMicrosoft
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary