#incident-response
46 stories taggedincident-response.

A Local Housing Authority Lost $1 Million to Email Fraud. Here Is What It Did Next.
A cybersecurity consultant's account of how a small government agency rebuilt its defences after criminals silently rerouted a wire transfer offers a practical road map for the thousands of local bodies running on skeleton IT crews.

The Ransomware Scavengers: 'Ransom Busters' Emails Victims Demanding Up to $60,000
A new outfit is contacting companies already hit by ransomware and offering, for a fee, to wipe their stolen files from the attackers' servers.

Fake 'Ransom Busters' Service Is Actually a Ransomware Insider Running a Side Scam
A criminal pretending to rescue hack victims is really a ransomware affiliate trying to pocket ransom money before his own gang gets it.

Your Team's Slack Messages During a Breach Could Cost More Than the Breach Itself
The panicked notes, the finger-pointing threads, the 'we knew about this' one-liners: what your staff types in the first 24 hours of a cyber incident can become courtroom evidence. Here is why that matters, and what to do before the subpoena arrives.

Nearly One in Three UK Manufacturers Hit by a Cyber Attack, Survey Finds
A new survey paints a stark picture of hacking risk across British industry, and reveals that half of affected companies had no plan ready when trouble arrived.

The criminals behind the Minnesota water attacks may have a better backup of your plant than you do
Hackers hit more than 30 small water utilities in two days. The most alarming detail isn't how they got in, it's that they may have walked out with the only complete copy of control logic the operators ever had.

River Bank Paid Hackers to Delete Stolen Data After June Ransomware Attack
Alabama's River Bank & Trust was hit by ransomware in June. The bank appears to have paid the criminals to destroy what they took, but still cannot confirm whether customer data was exposed.

What Hackers Actually Do After They're Inside Your Network
A Huntress case study shows why cleaning up the malware is only half the job. If you don't find the front door, they walk back in.

Nearly Three in Four Companies Admit They Aren't Ready for a Serious Cyberattack
A survey of 600 senior IT security leaders finds most have the tools but lack the coordination, visibility and boardroom alignment to survive a real incident.

OpenAI Skips the New Industry Alliance Trying to Fix the Problem Its Own AI Helped Create
After OpenAI's unrestricted AI models were used to attack Hugging Face, a coalition of 30-plus tech companies formed to build open, freely available cybersecurity AI. OpenAI is not among them.

Your ransomware playbook is probably putting the wrong person in charge at 4 a.m.
A growing body of evidence shows that the real damage in ransomware incidents often comes not from the attack itself, but from who gets to decide whether to pull the plug on a business-critical system.

CISOs Are Now Running Business Resilience. Most Companies Haven't Noticed.
Security chiefs are quietly absorbing responsibility for keeping companies alive after a disaster, not just preventing one. Three experienced practitioners explain what that shift actually demands.

What is ransomware and how does an attack actually unfold?
Ransomware locks your files or systems until you pay criminals to restore access. Here is exactly how that happens, step by step.

Ransomware Attacks Rose 25% in a Year. Artificial Intelligence Isn't the Main Driver.
A new report tracked 7,551 victims worldwide between April 2025 and March 2026. The growth came from more criminal groups, weaker targets, and supply-chain shortcuts, not fancy AI tools.

Cyberattack Hits Nichirei, Japan's Frozen Food Giant, Putting Personal Data at Risk
A July 13 attack knocked out warehouses and shipping lines across Japan. Nichirei says personal information may have been stolen, and a regulator report has already been filed.