Sunday , October 4 2026

Akira Ransomware Allegedly Compromise 12 Companies in 72 Hours

The Akira ransomware group increased its attacks, adding 12 new victims to its dark web portal from July 15 to July 17, 2025. They target various industries worldwide, including food production, manufacturing, legal, and IT services. The group uses a double-extortion tactic by stealing sensitive data, encrypting systems, and threatening to publish the information if the ransom isn’t paid.

A wide range of organizations from different sectors and countries have reportedly been compromised, showing the random target selection by the ransomware group. The attackers have described the companies and started detailing the sensitive data they purport to have stolen, increasing pressure on the victims. The victims include:

Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

CPanel has put out security updates to fix three problems in cPanel & WHM. These problems could let attackers take...
Read More
Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Nearly 100,000 Bee Cheng Hiang customers had their email addresses leaked when an employee used an AI tool to generate...
Read More
Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Hackers to exploit a flaw in Zimbra mail servers that are connected to the Internet. They send special emails that...
Read More
Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

Google has said that hackers are using two serious Citrix NetScaler security holes to get root access, set up hidden...
Read More
Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is alerting people about a major flaw in MikroTik RouterOS. This could...
Read More
CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

Apple has launched iOS 26.7.1 and iPadOS 26.7.1 to fix a serious zero-day flaw that it believes might have been...
Read More
Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

JadePuffer Agentic AI targets and destroys Azure’s cloud resources

The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal passwords, and damage key components. The...
Read More
JadePuffer Agentic AI targets and destroys Azure’s cloud resources

“InfoSecCon-2026: Bangladesh’s Cybersecurity Leaders Unite to Shape a Safer Digital Future”

The 5th Edition of InfoSecCon-2026, a premier cybersecurity-focused event, has been successfully completed with the participation of cybersecurity professionals, technology...
Read More
“InfoSecCon-2026: Bangladesh’s Cybersecurity Leaders Unite to Shape a Safer Digital Future”

Microsoft Patches CVSS 10.0 Azure AI Foundry Vulnerability Allowing Privilege Escalation

Microsoft has fixed a serious security flaw in Azure AI Foundry that could let bad actors gain privilege escalation. The...
Read More
Microsoft Patches CVSS 10.0 Azure AI Foundry Vulnerability Allowing Privilege Escalation

AWS is unable to restore access to Bahrain, one UAE cloud data zone after war damage

Amazon Web Services cannot restore access to its cloud-computing facility in Bahrain and ‌one of three data-hosting zones in the...
Read More
AWS is unable to restore access to Bahrain, one UAE cloud data zone after war damage

🇺🇸 The Colgin Companies: A US-based company that offers authentic liquid smoke sauces. The group claims to have stolen files related to clients, contracts, and agreements.

🇮🇹 Mazzoleni: An Italian firm specializing in the drawing, heat treatment, and coating of steel wires. Allegedly exfiltrated data includes agreements, detailed financial data, and other confidential files.

🇮🇹 Studioc: An IT consulting and services firm. The group claims to possess its accounting and financial data, as well as client information.

🇩🇪 BAF Management Consulting: A consulting services provider. Stolen data allegedly includes client accounting and financial information, along with employee data.

🇺🇸 PEPRO: A US-based manufacturer of shielded enclosure systems for mission-critical communications. The group threatens to leak over 15 GB of data, including employee personal documents, customer information, financial data, contracts, and NDAs.

🇺🇸 Title XI: A software and support company providing cloud-based case management for bankruptcy trustees. The attackers claim to have over 50 GB of data, including a huge amount of customer personal information like financial statements, passport/DL/SSN scans, employee information, court documents, and NDAs.

🇮🇹 Acetificio Andrea Milano: A historic Italian vinegar production company. Over 47 GB of data was allegedly stolen, containing personal document scans of owners and employees, financial data, customer information, and NDAs.

🇺🇸 Goldberg & Osborne: A law firm representing plaintiff injury victims. The group boasts of having over 150 GB of data, including personal documents of more than 200 clients, passports, medical records, financial data, and court documents.

🇺🇸 GreenVest: An environmental development and consulting firm. The breach allegedly involves over 7 GB of financial data and project files.

🇷🇴 Multilift Logistic Group: A company specializing in port operations and terminal warehousing. The threat actors claim to have 17 GB of data, including complete employee personal information with passport scans, client data, and numerous contracts.

🇬🇧 Fayrefield Foods: A producer and marketer of dairy products across Europe, the Middle East, and North America. Over 41 GB of data was allegedly exfiltrated, including employee scans, financial files, client information, contracts, and NDAs.

🇸🇪 Sib-Tryck Holding: A digital printing firm from Sweden. The group claims to have 45 GB of corporate documents, including client and employee information, project data, and agreements.

The companies listed on Akira’s leak site publicly acknowledge the breach and kick off the countdown for potential data release. This strategy puts pressure on victims to negotiate payments. The variety of targeted industries shows that no sector is safe from cyber attacks, and the data from legal and software firms could greatly harm both the companies and their clients if leaked.

Source: dailydarkweb

Check Also

GhostCode

GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

GhostCode is a new phishing kit that changes a regular Microsoft 365 sign-in into an …