Publications & Analyses
Argus Flow releases, platform announcements, press updates, and cybersecurity analyses.
Qilin and Warlock Ransomware Bypass EDR Tools via Vulnerable Drivers
Ransomware groups Qilin and Warlock are exploiting vulnerable drivers to disable over 300 EDR tools. This tactic weakens organizations' cyber defenses, increasing the risk of data breaches. This new method highlights the need to re-evaluate cybersecurity strategies.
BKA Identifies REvil Leaders Behind 130 German Ransomware Attacks
The BKA has successfully identified the leaders of the notorious REvil ransomware group. This group is linked to 130 ransomware attacks targeting organizations within Germany. While the specific number of affected records and data types are not detailed in this report, the identification marks a significant step in combating cybercrime.
Germany Identifies "UNKN," Leader of REvil and GandCrab Ransomware Gangs
German authorities have identified "UNKN," the elusive leader behind the prominent Russian ransomware groups GandCrab and REvil. The individual has been named as 31-year-old Russian Daniil Maksimovich Shchukin, linked to at least 130 acts of computer sabotage. This identification marks a significant achievement in global cybercrime enforcement.
European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack
The European Commission has confirmed a data breach connected to a supply chain attack involving the vulnerability scanner Trivy. While specific details on the number of affected records and precise data types remain under investigation, the incident highlights critical software supply chain vulnerabilities.
ChatGPT Data Leak, Android Rootkit, and Water Facility Ransomware Attack
Recent cybersecurity reports indicate a potential data leak affecting ChatGPT users. Concurrently, a new Android rootkit has been identified, and a critical water facility reportedly suffered a ransomware attack.
T-Mobile Clarifies Latest Data Breach Details in New Filing
T-Mobile has issued a new filing to clarify details regarding a recent data breach. The incident involved unauthorized access to customer data, potentially impacting tens of millions of users. Personal information such as names, addresses, phone numbers, and dates of birth were reportedly compromised.
Nacogdoches Memorial Hospital Data Breach Affects 250,000 Patients
Nacogdoches Memorial Hospital recently announced a data breach impacting approximately 250,000 individuals. The incident involved unauthorized access to patient data, potentially compromising sensitive personal and health information. The hospital is taking steps to address the breach and support affected individuals.
Claude Code Vulnerability Discovered After Source Leak
A critical vulnerability has been identified in Claude's code, following a recent source code leak. This flaw poses significant security risks, potentially impacting user data and system integrity. Cybersecurity experts are urging immediate action to mitigate the threat.
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
Cyber attackers have exploited the CVE-2025-55182 vulnerability to breach 766 Next.js hosts. This breach resulted in the theft of sensitive credentials from the affected servers.
Hasbro Confirms Cyberattack and Data Incident
Toy manufacturing giant Hasbro has confirmed it was recently hit by a cyberattack. While the full scope is still under investigation, such incidents often involve unauthorized access to systems, potentially compromising customer and employee data.
Axios NPM Package Compromised in North Korean Supply Chain Attack
The popular Axios NPM package has reportedly been breached in a sophisticated supply chain attack attributed to North Korean state-sponsored actors. While specific details on affected records and stolen data are still emerging, the compromise poses a significant risk to developers and applications relying on the package.
Claude AI Source Code Leaked Due to npm Packaging Error
Anthropic's Claude AI source code has been inadvertently exposed through an npm packaging error, the company confirmed. This incident involved the accidental publication of internal code, potentially affecting the proprietary intellectual property of the AI model. No user data appears to have been directly compromised in this packaging oversight.