Welsh firm Owens Group suffered a ransomware attack that has resulted in its internal data being published on Lockbit’s ‘dark web’ website. Cyber risk management company Dynarisk believes the attackers demanded a ransom of up to £2m ($2.5m). The information published includes financial data, employee personal details and client details such as payment info and contacts. Companies are cautioned to protect against such attacks with anti-malware controls, careful control of access accounts, offsite data backups, immediate software update procedures and cyber insurance policies.

“PupkinStealer” A New .NET-Based Malware Steals Browser Credentials & Exfiltrate via Telegram
PupkinStealer is a C# malware that steals sensitive data, including browser credentials and desktop files, using Telegram for stealthy data exfiltration. Discovered in April 2025,