Ransomware Rampage: Unpatched Software and New Attacks Leave Cybersecurity in Chaos
SimpleHelp Remote Monitoring and Management instances are under attack by ransomware actors, says CISA. These cyber culprits are exploiting unpatched versions to breach an unnamed utility billing software provider. If only cybercriminals were as eager to patch holes as they are to exploit them, we might all sleep a little more soundly.

Hot Take:
Looks like ransomware actors are getting a little too cozy with SimpleHelp! This is the digital version of not patching a hole in your roof and wondering why you’re getting rained on. And who knew Fog wasn’t just a weather pattern but a formidable cyber foe? Meanwhile, LockBit ransomware actors are running around like a reality TV show, leaking secrets and making frenemies all over the place. It’s a cyber soap opera, folks, and we’re just here for the popcorn!
Key Points:
- Unpatched SimpleHelp RMM instances are being targeted by ransomware actors.
- Fog ransomware is making waves with its use of employee monitoring software.
- LockBit’s RaaS scheme is alive and kicking, with China being a prime target.
- CISA advises against paying ransoms and offers mitigation strategies.
- LockBit’s admin panel leak reveals a complex behind-the-scenes operation.