You are here

Cybersecurity

Ransomware Resilience – The Always Shifting Ransomware Landscape

Given the constantly evolving nature of the ransomware landscape, it is essential to keep abreast of the latest trends and tactics employed by threat actors. Recent observations such as adapting cybercriminal operations to increased competition, shifting criminal structures in light of law enforcement action, as well as lack of trust among ransomware affiliates highlight the ever-changing nature of this growing threat. 

The following five recently observed developments within the ransomware landscape underscore some of the current notable shifts within the ecosystem:

Joint Cybersecurity Advisory - #StopRansomware: Ransomhub Ransomware

Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders that detail various ransomware variants and ransomware threat actors. These #StopRansomware advisories include recently and historically observed tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) to help organizations protect against ransomware.

Report – KnowBe4 Report Reviews Cyber Attacks Targeting Critical Infrastructure

Analyst comment (Jennifer Lyn Walker): It’s unclear if KnowBe4 has any empirical data at all or is just rehashing widely available reporting and making assumptions or quoting statistics from other’s research – it seems more like the latter. However, what KnowBe4 typically does well is provide resources to help organizations improve cyber resilience. The report does mention a couple of old incidents that impacted the water and wastewater sector. We are providing this report simply for awareness.

CISA Advisory – Iran-based Cyber Actors Enabling Ransomware Attacks on U.S. Organizations

CISA, the FBI, and the Department of Defense Cyber Crime Center (DC3) have issued a joint Cybersecurity Advisory: “Iran-based Cyber Actors Enabling Ransomware Attacks on U.S. Organizations.” The advisory aims to alert network defenders about ongoing threats from a group of Iran-based cyber actors known to the private sector as Pioneer Kitten, Parisite, Rubidium, and Lemon Sandstorm. As late as August 2024, this group has been targeting U.S.

Pages

Subscribe to Cybersecurity