logo

Ransomware Review: The Advent of Double Extortion

ID: 446084f3-cbb0-562d-abcd-86d2e56f6463

STIX ID: report--446084f3-cbb0-562d-abcd-86d2e56f6463

Feed Name: Zscaler Security Research Blog

Threat Score
75/100

Date Published: 2025-04-02

Date Updated: 2026-05-01

...
...

This Zscaler ThreatLabZ report examines the DarkSide ransomware attack that disrupted Colonial Pipeline and the broader advent of “double extortion” ransomware—where attackers both encrypt data and exfiltrate it for publication—highlighting an observed rise in such attacks, notable families (Maze/Egregor, Sodinokibi/REvil, Doppelpaymer, Ragnar Locker, Avaddon, Conti, DarkSide), the attack chain and business impact, and recommended Zero Trust–based protections and incident response measures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.