Avast releases decryptor for AtomSilo and LockFile ransomware
https://decoded.avast.io/threatintel/decryptor-for-atomsilo-and-lockfile-ransomware/

Russian-speaking cybercrime evolution: What changed from 2016 to 2021
https://securelist.com/russian-speaking-cybercrime-evolution-2016-2021/104656/

UDP RAT Malware Being Distributed via Webhards
https://asec.ahnlab.com/en/27555/

FTC: ISPs collect and monetize far more user data than you’d think
https://www.bleepingcomputer.com/news/security/ftc-isps-collect-and-monetize-far-more-user-data-than-you-d-think/
https://www.ftc.gov/news-events/press-releases/2021/10/ftc-staff-report-finds-many-internet-service-providers-collect

Talk and discussion about a problem is cheap and seems to go on forever.
Action and a solution is always hard to achieve and usually only happens after some catastrophe.

New activity from Russian actor Nobelium
https://blogs.microsoft.com/on-the-issues/2021/10/24/new-activity-from-russian-actor-nobelium/

Hitting the BlackMatter gang where it hurts: In the wallet
https://blog.emsisoft.com/en/39181/on-the-matter-of-blackmatter/

Threat Advisory: Hackers Are Exploiting a Vulnerability in Popular Billing Software to Deploy Ransomware
https://www.huntress.com/blog/threat-advisory-hackers-are-exploiting-a-vulnerability-in-popular-billing-software-to-deploy-ransomware

Spammers use Squirrelwaffle malware to drop Cobalt Strike
https://www.bleepingcomputer.com/news/security/spammers-use-squirrelwaffle-malware-to-drop-cobalt-strike/

Fake npm Roblox API Package Installs Ransomware and has a Spooky Surprise
https://blog.sonatype.com/fake-npm-roblox-api-package-installs-ransomware-spooky-surprise

North Korean state hackers start targeting the IT supply chain
https://www.bleepingcomputer.com/news/security/north-korean-state-hackers-start-targeting-the-it-supply-chain/

Why not, the supply chain is in such perfect shape, something need to disrupt it. (Being sarcastic)

Microsoft finds new macOS vulnerability, Shrootless, that could bypass System Integrity Protection
https://www.microsoft.com/security/blog/2021/10/28/microsoft-finds-new-macos-vulnerability-shrootless-that-could-bypass-system-integrity-protection/

Which has already been fixed provided your OS is up to date. :slight_smile:

Rooting Malware Makes a Comeback: Lookout Discovers Global Campaign
https://blog.lookout.com/lookout-discovers-global-rooting-malware-campaign

Holy SEO Poisoning
https://www.menlosecurity.com/blog/holy-seo-poisoning/

THREAT ANALYSIS REPORT: Snake Infostealer Malware
https://www.cybereason.com/blog/threat-analysis-report-snake-infostealer-malware

Microsoft called out as big malware hoster – thanks to OneDrive and Office 365 abuse
https://www.theregister.com/2021/10/18/microsoft_malware_brand

So where is law enforcement in all of this? Don’t they also have a responsibility?

Chaos Ransomware Variant in Fake Minecraft Alt List Brings Destruction to Japanese Gamers
https://www.fortinet.com/blog/threat-research/chaos-ransomware-variant-in-fake-minecraft-alt-list-brings-destruction