Halcyon Threat Insights 017: June 2025 Ransomware Report
ID: 4edb5480-a804-5d80-9ec6-2cafb85b3fd6
STIX ID: report--4edb5480-a804-5d80-9ec6-2cafb85b3fd6
Feed Name: Halcyon Blog
**Halcyon RISE May 2025 Threat Insights:** This report summarizes detections and blocks of ransomware families (e.g., Babuk/Gizm, Sage/HPMilicry, Incransom/Imps, Akira), associated trojans and infostealers, and commonly abused post-exploitation tools (Mimikatz, RemCom, SharpHound, Rubeus) observed across multiple industry verticals; it documents active TTPs like credential dumping, lateral movement via PsExec/RDP, double extortion behaviors, and profiles the Fog ransomware actor and relevant ransomware news items.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
