Last Week in Ransomware: 10.07.2024
ID: d21fb3d8-ad91-57c0-9183-623c26262faa
STIX ID: report--d21fb3d8-ad91-57c0-9183-623c26262faa
Feed Name: Halcyon Blog
This briefing highlights recent active ransomware activity: DragonForce is leveraging leaked LockBit/Conti builders to operate a RaaS and has hit dozens of high-value victims; a disruptive ransomware attack against UMC Health has created critical healthcare outages with national-security implications; and Storm-0501 (deploying Embargo) is targeting hybrid cloud environments via credential theft, lateral movement (Impacket, Cobalt Strike), and cloud federation abuse, underscoring increased sophistication and risk to cloud and on‑prem assets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
