RANSOMWARE & CYBERSECURITY BLOG
new posts weekly
Insights on
data exfiltration.
Original research, analysis, and commentary from the BlackFog team on the exfiltration vectors reshaping enterprise security, from ransomware double extortion to Shadow AI to the agentic AI threats already emerging.
AWARD-WINNING BLOG SERIES
The State Of Ransomware, published every month.
Between the quarterly reports, our award-winning monthly series tracks ransomware as it happens: a global count of both publicly disclosed attacks and the undisclosed incidents surfacing on dark web leak sites, with the sectors, countries and groups behind them.
No form, no download. Read it on the blog the day it publishes.

featured posts
Learn how Studio Gang strengthened data security with BlackFog ADX Protect and ADX Vision to stop data exfiltration and reduce AI data risk.
BlackFog wins the 2026 TMC AI in Cybersecurity Innovation Award for ADX Protect, recognizing innovation in preventing data exfiltration and AI threats.
from the blog
- Categories: AI security, Data Exfiltration, Ransomware
Agentic AI is creating unsupervised data exfiltration paths that traditional security tools struggle to detect. This blog examines the attack surface and how to address it.
- Categories: Uncategorized
BlackFog’s first global Kick Off brought the team together in Arizona for strategy, connection, and unforgettable desert adventures.
- Categories: Breach, Healthcare, Ransomware
The DaVita ransomware attack exposed 2.7 million patient records. Learn what happened, what data was stolen, and how the Interlock gang pulled it off.
- Categories: Threats
Confronting INC Ransom, BlackFog’s Prevention-First Strategy for Affiliate-Driven Ransomware.
- Categories: AI security, Breach, Data Exfiltration
CamoLeak (CVE-2025-59145) turned GitHub Copilot into a silent data exfiltration channel via prompt injection and GitHub's own image proxy. CVSS 9.6.
- Categories: 2026, Ransomware, Research, The State Of Ransomware
BlackFog's state of ransomware March 2026 measures publicly disclosed and non-disclosed attacks globally.
free 14 days
AI Discovery & Data Exposure Assessment
See the Shadow AI and exfiltration paths active across your endpoints, in your own environment, in under two weeks.
