https://cyberinsider.com/play-ransomware-deploying-new-linux-variant-in-attacks-targeting-esxi/
Trend Micro's threat hunting team has uncovered a new Linux variant of the Play ransomware, specifically targeting VMware ESXi environments.
play ransomwaredeployingnewlinuxvariant
https://www.helpnetsecurity.com/2024/10/31/north-korean-hackers-play-ransomware/
North Korean state-sponsored hackers Jumpy Pisces burrow into corporate networks then hands matters over to the Play ransomware group.
north koreanplay ransomwarehackerspaveway
https://www.trendmicro.com/en_us/research/22/i/play-ransomware-s-attack-playbook-unmasks-it-as-another-hive-aff.html
Play is a new ransomware that takes a page out of Hive and Nokoyawa's playbook. The many similarities among them indicate that Play, like Nokoyawa, are...
play ransomwareattackplaybooksimilarhive
https://www.ssl2buy.com/cybersecurity/play-ransomware-fbi-warning
Jun 20, 2025 - FBI, CISA, and ACSC warn of a Play ransomware resurgence with over 900 confirmed victims across sectors. See what this means for your organization.
play ransomwarefbiissuescriticalwarning
https://www.bleepingcomputer.com/news/security/play-ransomware-exploited-windows-logging-flaw-in-zero-day-attacks/
The Play ransomware gang has exploited a high-severity Windows Common Log File System flaw in zero-day attacks to gain SYSTEM privileges and deploy malware on...
zero day attacksplay ransomwareexploitedwindowslogging
https://www.trendmicro.com/vinfo/gb/security/news/ransomware-spotlight/ransomware-spotlight-play
Play is shaping up to be a player on the rise within the ransomware landscape, with its operators likely to continue using the ransomware in future. We take a...
trend microransomwarespotlightplaygb