logo

Dragos Industrial Ransomware Analysis: Q2 2025

ID: 746be342-0021-54f9-8907-1cee56c8cedb

STIX ID: report--746be342-0021-54f9-8907-1cee56c8cedb

Feed Name: Dragos Blog

Threat Score
85/100

Date Published: 2025-08-14

Date Updated: 2026-04-27

...
...

Dragos’ Q2 2025 ransomware overview documents 657 incidents against industrial organizations, showing a shifting ecosystem where emerging groups (notably Qilin) and rebranded actors exploited critical vulnerabilities (FortiGate, SimpleHelp, SAP) and adopted advanced TTPs—double-extortion, wiper modes, and ESXi-targeted lockers—while social-engineering and IAB activity increased; the report underscores significant operational impacts to manufacturing and critical infrastructure, law enforcement disruptions, and a heightened risk posture driven by state-aligned operations and continued exploitation of exposed systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.