logo

Ransomware and Cyber Extortion in Q1 2024

ID: c7df5df7-5b2c-5f85-964b-a8b4afbd3964

STIX ID: report--c7df5df7-5b2c-5f85-964b-a8b4afbd3964

Feed Name: ReliaQuest Blog

Threat Score
72/100

Date Published: 2024-05-01

Date Updated: 2026-04-29

...
...

ReliaQuest’s Q1 2024 ransomware report finds an 18% quarter-over-quarter dip in organizations listed on ransomware data-leak sites but a year-over-year increase, highlights active groups (LockBit, Black Basta, Play, ALPHV) and major events including a law enforcement operation against LockBit (Operation Chronos) and an ALPHV exit scam tied to a $22M ransom, identifies the US and manufacturing as top targets and common initial-access TTPs (phishing, exposed remote services, public-facing exploits), and forecasts renewed campaigns (Clop), greater cloud/SaaS targeting and AI-driven tactics while offering defensive recommendations (MFA, least privilege, backups, patching).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.