惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
美团技术团队
Last Week in AI
Last Week in AI
WordPress大学
WordPress大学
博客园 - 三生石上(FineUI控件)
博客园 - 聂微东
雷峰网
雷峰网
阮一峰的网络日志
阮一峰的网络日志
博客园 - 叶小钗
IT之家
IT之家
Google DeepMind News
Google DeepMind News
D
Docker
J
Java Code Geeks
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
Apple Machine Learning Research
Apple Machine Learning Research
博客园 - 【当耐特】
V
V2EX
Hugging Face - Blog
Hugging Face - Blog
博客园 - Franky
月光博客
月光博客
宝玉的分享
宝玉的分享
酷 壳 – CoolShell
酷 壳 – CoolShell
aimingoo的专栏
aimingoo的专栏
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More

Product News – ThreatDown by Malwarebytes

100% malware detection at 1.7% CPU: how ThreatDown stops Mac info stealers ThreatDown Email × EDR—a force multiplier in protection ThreatDown shines bright with multiple G2 awards and top-tier AV Lab performance ThreatDown introduces auto-isolation - ThreatDown by Malwarebytes Introducing Browser Phishing Protection: enhanced web security for your organization ThreatDown introduces Firewall Management Product of the Year! AVLab honors ThreatDown Endpoint Protection Introducing ThreatDown OneView free self-serve trial for MSPs ThreatDown is Product of The Year
New in Nebula & OneView: CVE Tags for Ransomware-Linked V...
2025-04-24 · via Product News – ThreatDown by Malwarebytes

Joana Pereira, Product Manager Asset & Email Security

Joana Pereira, Product Manager Asset & Email Security

In February 2025, ransomware groups like Cl0p and RansomHub ran riot — targeting organizations across sectors with a mix of zero-days and known vulnerabilities. (Full breakdown here

To help security teams stay ahead of threats, our Nebula and OneView consoles now display information directly from the Cybersecurity and Infrastructure Security Agency (CISA) regarding vulnerabilities exploited in ransomware campaigns.  

Why This Update Matters 

CISA curates the Known Exploited Vulnerabilities (KEV) Catalog — a trusted source for vulnerabilities confirmed to be actively exploited in the wild. 

CISA added a crucial new indicator: “Known To Be Used in Ransomware Campaigns” – (more information here). This highlights vulnerabilities that have been linked to real ransomware activity in the field. These aren’t theoretical risks — they’re the same CVEs leveraged in attacks like the ones we saw just weeks ago. 

What You’ll See in Nebula & OneView 

  • New “Ransomware Risk” label added to CVEs confirmed by CISA as used in ransomware campaigns 
  • An info icon that informs these were sourced directly from CISA’s Ransomware vulnerability warning 
  • All visible in your Vulnerabilities page and CVE detail slide-outs 

What You Can Do Now 

This integration helps your team identify and prioritize ransomware-linked CVEs faster — so you can patch what matters most, sooner. 

Login to Nebula or OneView to see which CVEs in your environment carry this extra layer of risk. And if you missed it, read our full analysis of ransomware in February 2025 to see how these threats are evolving — and what defenders need to know now. 

ThreatDown Support articles links: