Ransomware Roundup: 09.03.23
ID: e3fbf167-11a6-5f51-91c8-8685f19bd7b7
STIX ID: report--e3fbf167-11a6-5f51-91c8-8685f19bd7b7
Feed Name: Halcyon Blog
The report outlines a sharp increase in ransomware incidents during 2023 driven by exploitation of known vulnerabilities (e.g., Citrix NetScaler CVE-2023-3519 and MOVEit CVE-2023-34362), large-scale campaigns by groups such as Cl0p, LockBit and ALPHV/BlackCat, and the long-running Qakbot botnet (recently disrupted by multinational law enforcement); it emphasizes attacker automation, widespread under-reporting, and advocates patching plus multi-layered defenses to detect attacks before ransomware payloads are deployed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
