Topic
Ransomware
Ransomware crews, double-extortion tradecraft, and what each campaign means for Saudi financial institutions.
42 articles in this topic
Qilin Ransomware Turned One Compromised MSP Into a Gateway to 28 Financial Firms
One compromised MSP gave Qilin ransomware access to 28 financial firms in a single campaign. Saudi banks must audit their vendor security posture before history repeats itself in the Kingdom.
Cloud & IdentityEverest Ransomware Steals 910GB from Nissan via Stale FTP Credentials — A Third-Party Risk Wake-Up Call for Saudi Banks
Everest ransomware exfiltrated 910GB of Nissan customer and loan data through a vendor FTP server with 3-year-old credentials and no MFA. Here's what Saudi financial institutions must learn about third-party risk management.
VulnerabilitiesInterlock Ransomware Exploited Cisco FMC Zero-Day for 36 Days Before Disclosure — Saudi Banks Must Audit Now
Interlock ransomware weaponized a CVSS 10.0 Cisco Firewall Management Center flaw for over a month before Cisco disclosed it. Saudi banks relying on Cisco firewalls face immediate exposure — here is what your SOC team must do today.
Guides & LessonsLesson 44: Ransomware Defense and Recovery — A Practical Guide for Saudi Financial Institutions
Lesson 44 in our cybersecurity series: a practical guide to ransomware defense, incident response, and recovery for SAMA-regulated financial institutions.
VulnerabilitiesInterlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131: Urgent Action for Financial Institutions
Interlock ransomware exploited a CVSS 10.0 Cisco Firewall Management Center zero-day for over a month before disclosure. Here's what Saudi financial institutions must do immediately.
Guides & LessonsLesson 2: Types of Cyber Threats — From Phishing to Ransomware
Path 1: Cybersecurity Fundamentals — Lesson 2 of 10. Understand the threat landscape facing Saudi organizations and learn how to recognize and defend against the most dangerous attack types.