Ransomware Tool Matrix Project Updates: May 2025
ID: 19ba9c50-8462-5e84-af4e-e02031e9cf24
STIX ID: report--19ba9c50-8462-5e84-af4e-e02031e9cf24
Feed Name: BushidoToken Blog
This May 2025 update to the Ransomware Tool Matrix and Ransomware Vulnerability Matrix reviews active ransomware groups, newly observed and commonly used tools (EDR evasion, discovery, exfiltration, RMM/LOLBAS), and exploited vulnerabilities (including FortiOS/FortiProxy, Windows CLFS, Veeam, Confluence and others). The report highlights ecosystem instability following major operations and exit scams, documents specific tools and CVEs tied to groups, and recommends defenders prioritize threat hunting, detection rule development, and blocking of unauthorized tools.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
