RANSOMWARE & CYBERSECURITY BLOG
new posts weekly
Insights on data exfiltration.
Original research, analysis, and commentary from the BlackFog team on the exfiltration vectors reshaping enterprise security, from ransomware double extortion to Shadow AI to the agentic AI threats already emerging.
AWARD-WINNING BLOG SERIES
The State Of Ransomware, published every month.
Between the quarterly reports, our award-winning monthly series tracks ransomware as it happens: a global count of both publicly disclosed attacks and the undisclosed incidents surfacing on dark web leak sites, with the sectors, countries and groups behind them.
No form, no download. Read it on the blog the day it publishes.

featured posts
BlackFog's state of ransomware August 2026 measures publicly disclosed and non-disclosed attacks globally.
threat intelligence brief · medusa ransomware Sector Medical · Education · Legal · Insurance · Technology · Manufacturing Brief ⟶
BlackFog Q2 2026 Ransomware Report: Undisclosed Ransomware Attacks Surge 40% Year on Year
BlackFog researchers uncover Bee Stealer, a Windows infostealer targeting Codex and Claude data with AI-powered victim profiling.
from the blog
- Categories: AI security, Breach, Data Exfiltration
CamoLeak (CVE-2025-59145) turned GitHub Copilot into a silent data exfiltration channel via prompt injection and GitHub's own image proxy. CVSS 9.6.
- Categories: 2026, Ransomware, Research, The State Of Ransomware
BlackFog's state of ransomware March 2026 measures publicly disclosed and non-disclosed attacks globally.
- Categories: Cybersecurity, Data Exfiltration, Exploits
BlackFog analyzes Venom Stealer, a new MaaS infostealer that uses ClickFix delivery to launch an automated exfiltration pipeline covering credential theft, wallet cracking, and fund sweeping.
- Categories: AI security, Cybersecurity, Network Protection
Learn all about cyber governance, risk and compliance in 2026 and why this must be a consideration at the highest levels of all organizations.
- Categories: AI security, Cybersecurity, Network Protection
There are a range of cybersecurity compliance standards firms of all sizes must deal with, including mandatory and voluntary frameworks. Here's what you need to know.
- Categories: AI security, Cybersecurity, Network Protection
Learn precisely what information security compliance entails and the various steps that go into making this effective.
free 14 days
AI Discovery & Data Exposure Assessment
See the Shadow AI and exfiltration paths active across your endpoints, in your own environment, in under two weeks.
