CyberAware UK: Live Ransomware Alert and Mid-Week Scam Wrap-Up
Welcome to your Wednesday CyberAware UK briefing for 2 September 2026. Today we're looking at a live ransomware threat, a massive data breach, and some simple actions you can take to stay safe.
DarkWatch Spots Active Ransomware Site
Our monitoring tools detected a ransomware leak site on the dark web, at an address beginning with 'juhanurm'. It's currently active, meaning it could be used to publish stolen data from UK victims. If you're a business, ensure your backups are offline and test restoration procedures.
FBI Probes Sale of 153M+ Drivers Licenses
A marketplace selling over 153 million driver's licenses is under investigation. This type of data can be used for identity theft. Watch out for phishing messages referencing your car or driving, and never click links in unsolicited texts or emails.
TeamPCP Hackers Arrested
Two individuals linked to the Lapsus$ extortion group, known as TeamPCP, have been arrested in Australia. This is a positive sign that authorities are closing in on such gangs, but it doesn't mean the threat is gone.
What Can You Do?
A little housekeeping can go a long way. Check your phone's app permissions. Go to settings and review which apps have access to your location, camera, or microphone. If you don't use an app, revoke those permissions. Also, review bank statements for any unknown transactions. And if you use a crypto wallet, never share your seed phrase, and consider a hardware wallet for large amounts.
Final Takeaway
Today's one simple step: tighten up your app permissions. It's quick, free, and gives you more control over your device. If you come across a scam, report it to Action Fraud. Stay safe, and we'll be back tomorrow with more updates.
