Ransomware and Cyber Extortion in Q2 2024
ID: 827f8942-bb79-5990-8f95-5e53ad3145f0
STIX ID: report--827f8942-bb79-5990-8f95-5e53ad3145f0
Feed Name: ReliaQuest Blog
ReliaQuest's Q2 2024 ransomware intelligence finds 1,237 organizations listed on data-leak sites (up 20% from Q1 but down 13% year-over-year), highlights disruption in the RaaS ecosystem after law enforcement actions (LockBit takedown, ALPHV dissolution), emergence and rapid growth of new groups like RansomHub and BlackSuit, continued use of exposed credentials and infostealers (including a Snowflake-related credential compromise), and increased supply-chain risk; the report outlines prevalent TTPs, sector/geographic targeting, notable incidents, and prioritized mitigations (patching, DRP, EDR in prevent mode, backups, application control).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
