Ransomware Roundup: 07.31.23
ID: ebfd53fc-a6f0-51b0-91fe-2118c3381544
STIX ID: report--ebfd53fc-a6f0-51b0-91fe-2118c3381544
Feed Name: Halcyon Blog
Researchers report that the Cl0p gang has actively exploited a vulnerability in Progress Software's MOVEit Transfer to perform widespread data-extortion attacks—compromising hundreds of organizations (including the U.S. Department of Energy) through automated exploitation and exfiltration without deploying ransomware. The campaign has yielded very large ransom demands from a small number of victims, highlighting the profitability of ransomware-as-a-service operations, the shift toward ransomware-less extortion, and the need for rapid patching, improved incident resilience, and clearer disclosure practices for public companies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
