Dragos Industrial Ransomware Analysis: Q2 2025
ID: 746be342-0021-54f9-8907-1cee56c8cedb
STIX ID: report--746be342-0021-54f9-8907-1cee56c8cedb
Feed Name: Dragos Blog
Dragos’ Q2 2025 ransomware overview documents 657 incidents against industrial organizations, showing a shifting ecosystem where emerging groups (notably Qilin) and rebranded actors exploited critical vulnerabilities (FortiGate, SimpleHelp, SAP) and adopted advanced TTPs—double-extortion, wiper modes, and ESXi-targeted lockers—while social-engineering and IAB activity increased; the report underscores significant operational impacts to manufacturing and critical infrastructure, law enforcement disruptions, and a heightened risk posture driven by state-aligned operations and continued exploitation of exposed systems.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
