RANSOMWARE & CYBERSECURITY BLOG
new posts weekly
Insights on data exfiltration.
Original research, analysis, and commentary from the BlackFog team on the exfiltration vectors reshaping enterprise security, from ransomware double extortion to Shadow AI to the agentic AI threats already emerging.
AWARD-WINNING BLOG SERIES
The State Of Ransomware, published every month.
Between the quarterly reports, our award-winning monthly series tracks ransomware as it happens: a global count of both publicly disclosed attacks and the undisclosed incidents surfacing on dark web leak sites, with the sectors, countries and groups behind them.
No form, no download. Read it on the blog the day it publishes.

featured posts
BlackFog's state of ransomware August 2026 measures publicly disclosed and non-disclosed attacks globally.
threat intelligence brief · medusa ransomware Sector Medical · Education · Legal · Insurance · Technology · Manufacturing Brief ⟶
BlackFog Q2 2026 Ransomware Report: Undisclosed Ransomware Attacks Surge 40% Year on Year
BlackFog researchers uncover Bee Stealer, a Windows infostealer targeting Codex and Claude data with AI-powered victim profiling.
from the blog
- Categories: AI security, Cybersecurity, Online Safety
What will enterprise cybersecurity hold for business in 2026 and what will cybersecurity leaders need to do to protect their firms from new threats?
- Categories: Exploits, Ransomware, Variants
Anthropic’s Claude was manipulated into a cyber espionage campaign. See how it happened, why it matters, and how ADX can block machine-speed data theft.
- Categories: Exploits, Ransomware, Variants
Investigating Matrix Push C2, a browser based command and control system that uses push notifications to deliver malware, run phishing campaigns, and steal data across platforms.
- Categories: Exploits, Ransomware, Variants
Clop exploited an Oracle E-Business Suite zero-day to steal data from major organizations. Here’s how it happened and what it means for supply-chain security.
- Categories: Cybersecurity, Online Safety, Variants
In-depth 2025 Qilin ransomware analysis covering its rise, attack chain, intimidation tactics, double extortion model, and defense strategies.
- Categories: Cybersecurity, Online Safety, Variants
Kerberoasting attack explained with examples, detection tips, and prevention steps. Learn how to secure Active Directory from credential theft.
free 14 days
AI Discovery & Data Exposure Assessment
See the Shadow AI and exfiltration paths active across your endpoints, in your own environment, in under two weeks.
