logo

Ransomware Roundup: 05.07.22

ID: 3b465c1c-8f6d-54ff-8a43-3211f94de46d

STIX ID: report--3b465c1c-8f6d-54ff-8a43-3211f94de46d

Feed Name: Halcyon Blog

Threat Score
78/100

Date Published: 2022-05-07

Date Updated: 2026-04-28

...
...

The report highlights renewed activity from high-profile ransomware actors and emergent techniques: REvil appears to be reconstituting, AvosLocker variants abuse a legitimate Avast kernel driver to disable endpoint protections, the FBI warns of BlackCat/ALPHV targeting at least 60 entities and leveraging Rust, and a researcher disclosed a method to hijack DLL execution to block ransomware encryption. These developments indicate active, evolving ransomware campaigns that employ kernel-level evasion and opportunistic reuse of legitimate drivers to defeat defenses.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.