Between April 2024 and April 2025, the financial sector faced 406 sophisticated ransomware incidents, highlighting advanced tactics, strategic targeting, and significant data exposures. Major groups like RansomHub and LockBit employed complex social engineering and living-off-the-land techniques to bypass security, often leveraging remote access systems. Ransom demands were tailored to victims’ revenues, indicating methodical attack planning based on financial intelligence.

Microsoft Bookings Vulnerability Let Attackers Alter the Meeting Details
A vulnerability in Microsoft Bookings allowed attackers to manipulate meeting details via HTML injection due to inadequate input validation. Exploited mainly through the “Reschedule” functionality,