Todos os setores

Ransomware no setor Financial Services

O setor Financial Services registra 17 vítimas de ransomware conhecidas no Brasil. Veja os grupos por trás dos ataques e a tendência recente.

17vítimas
11grupos
3nos últimos 90 dias
Evolução dos ataques (12 meses)
12
06
07
Grupos que mais atacam Financial Services
ransomhub 🇷🇺5 vítimas
Section92 vítimas
devman2 vítimas
killsec1 vítimas
krybit1 vítimas
lockbit31 vítimas
medusa1 vítimas
8base1 vítimas
stormous 🇷🇺1 vítimas
clop1 vítimas
Vulnerabilidades exploradas contra este setor

CVEs que os grupos que atacam o setor Financial Services exploram — priorize a correção destas.

CVE-2021-44228Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpointsKEVusada por ransomwareCVE-2023-22518All versions of Confluence Data Center and Server are affected by this unexploited vulnerability. This ImpropeKEVusada por ransomwareCVE-2023-35078An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionaKEVusada por ransomwareCVE-2023-35082An authentication bypass vulnerability in Ivanti EPMM 11.10 and older, allows unauthorized users to access resKEVusada por ransomwareCVE-2024-3400PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtectKEVusada por ransomwareCVE-2019-11510In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, anKEVusada por ransomwareCVE-2017-5638The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exKEVusada por ransomwareCVE-2019-0708A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services whKEVusada por ransomwareCVE-2019-19781An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, anKEVusada por ransomwareCVE-2020-5902In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, thKEVusada por ransomwareCVE-2021-21985The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in tKEVusada por ransomwareCVE-2021-22005The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actorKEVusada por ransomware
Vítimas recentes
*****.com.brSection9 · 2026-07-26
******.net.brSection9 · 2026-07-26
coemi.com.brkrybit · 2026-06-19
CANCERdevman · 2025-12-11
C*NC*Rdevman · 2025-12-11
Banco Guanabaradragonforce · 2025-07-30
Sicoob8base · 2024-12-22
ConCashkillsec · 2024-10-28
oficina.oficinadasfinancas.com.brransomhub · 2024-07-24
ValeCardmedusa · 2024-07-15
www.sicoob.com.brransomhub · 2024-06-01
500gb/www.confins.com.br/10kk/BR/Come to chat or we will attack you again.ransomhub · 2024-05-14
www.confins.com.brransomhub · 2024-05-13
SP Mundi ransomhub · 2024-03-07
ZURICH.COM.BRclop · 2023-06-20