Crimeware

GuidePoint Research and Intelligence Team’s (GRIT) 2023 Q2 Ransomware Report Highlights a 100% Year-Over-Year Increase in Public Ransomware Victims

Retrieved on: 
Thursday, July 20, 2023

GuidePoint Security , a cybersecurity solutions leader enabling organizations to make smarter decisions and minimize risk, today announced the release of GuidePoint Research and Intelligence Team’s (GRIT) Q2 2023 Ransomware Report.

Key Points: 
  • GuidePoint Security , a cybersecurity solutions leader enabling organizations to make smarter decisions and minimize risk, today announced the release of GuidePoint Research and Intelligence Team’s (GRIT) Q2 2023 Ransomware Report.
  • This report is based on data obtained from publicly available resources, including threat groups themselves, and insight into the ransomware threat landscape.
  • In the second quarter, GRIT tracked 1,177 total publicly posted ransomware victims claimed by 41 different threat groups.
  • GRIT’s latest Ransomware Quarterly Report shows a 38% increase in public ransomware victims compared to Q1 2023, and a startling 100% increase from Q2 2022.

ReasonLabs Releases Annual Report Revealing Major Cyber Threats Facing Consumers

Retrieved on: 
Thursday, January 19, 2023

NEW YORK, Jan. 19, 2023 /PRNewswire/ -- ReasonLabs, the cybersecurity pioneer equipping families and individuals with the same level of cyber protection used by Fortune 500 companies, today released its annual research report, The State of Consumer Cybersecurity 2023, featuring comprehensive data and in-depth analysis of consumer cybersecurity threats from 2022 and predictions of the threats consumers are likely to face in 2023. The annual report is comprised of data derived from ReasonLabs users from more than 180 countries.

Key Points: 
  • The annual report is comprised of data derived from ReasonLabs users from more than 180 countries.
  • The report was developed by researchers from ReasonLabs' Threat Intelligence Center (TIC) , the company's industry-leading in-house research arm.
  • The TIC plays a pivotal role in identifying cyber threats and assessing the rapidly evolving cybersecurity landscape, analyzing two billion files per day and identifying more than 24 million threats every month.
  • The TIC shares its findings with the cyber research community at large to ensure public awareness of—and protection against—emerging threats.

Malware-as-a-Service on the rise, ransomware pivots from Bitcoin: Kaspersky predicts crimeware and financial threats in 2023

Retrieved on: 
Tuesday, November 22, 2022

These and other predictions are in Kasperskys Crimeware and financial cyberthreats in 2023 report.

Key Points: 
  • These and other predictions are in Kasperskys Crimeware and financial cyberthreats in 2023 report.
  • The cybercrime market has been developing extensively, with the overwhelming majority of attackers pursuing one goal financial profit.
  • This year, Kaspersky researchers have decided to adjust their predictions accordingly, expanding them to encompass both crimeware developments and financial cyberthreats.
  • By analyzing the significant events and trends that formed both crimeware and the financial threat landscape in 2022, Kaspersky researchers have forecasted several important tendencies expected in 2023.

Enhanced Threat Intelligence Portal provides consolidated access to Kaspersky Threat Intelligence expertise

Retrieved on: 
Wednesday, June 1, 2022

The updated portal supports real-time search across various threat intelligence resources, including Kasperskys databases, Dark Web and Surface Web.

Key Points: 
  • The updated portal supports real-time search across various threat intelligence resources, including Kasperskys databases, Dark Web and Surface Web.
  • The renewed Kaspersky Threat Intelligence Portal [1] is a single pane of glass for threat intelligence.
  • The Research Graph introduced in Kaspersky TI Portal is designed to explore data stored inside the portal, discover threat commonalities and generate new related IoCs.
  • [1] Kaspersky Threat Intelligence Portal provides a single point of entry to the following services: Threat Data Feeds, APT Intelligence Reporting, Crimeware Intelligence Reporting, ICS Threat Intelligence Reporting, Digital Footprint Intelligence, Threat Lookup, Threat Attribution Engine and Cloud Sandbox.

New Variants of Tor2Mine Cryptominer Feature Enhanced Evasion, Persistence and Spreading Powers, Sophos Reports

Retrieved on: 
Thursday, December 2, 2021

In the research, Sophos describes new variants of the miner that include a PowerShell script that attempts to disable malware protection, execute the miner payload and steal Windows administrator credentials.

Key Points: 
  • In the research, Sophos describes new variants of the miner that include a PowerShell script that attempts to disable malware protection, execute the miner payload and steal Windows administrator credentials.
  • The presence of miners, like Tor2Mine, in a network is almost always a harbinger of other, potentially more dangerous intrusions.
  • However, Tor2Mine is much more aggressive than other miners, said Sean Gallagher, senior threat researcher at Sophos.
  • Indicators of compromise for the Tor2Mine variants discussed in the research are available on SophosLabs GitHub page.

AdvIntel & KPMG LLP announce alliance around cyber threat detection and ransomware response

Retrieved on: 
Thursday, September 30, 2021

According to AdvIntel CEO, Vitali Kremez,"The state of the current cyber security market is full of uncertainties.

Key Points: 
  • According to AdvIntel CEO, Vitali Kremez,"The state of the current cyber security market is full of uncertainties.
  • Now, with the unique alliance, we are effectively reversing the traditional breach paradigm with the vision to disrupt breaches before they turn into ransomware.
  • Ed Goings, KPMG National Lead for Cyber Response Services stated "Intelligence of this level is a complete game changer.
  • AdvIntel and KPMG will jointly go to market to combat cyber incidents, by providing early-warning alerting, applied threat detection, and long-term strategic threat intelligence.AdvIntel and KPMG are already working jointly with several cyber insurance providers aroundthe threat prevention and loss avoidance needs oftheir customer base.

AdvIntel & KPMG LLP announce alliance around cyber threat detection and ransomware response

Retrieved on: 
Thursday, September 30, 2021

AdvIntel and KPMG will jointly go to market to combat cyber incidents, by providing early-warning alerting.

Key Points: 
  • AdvIntel and KPMG will jointly go to market to combat cyber incidents, by providing early-warning alerting.
  • According to AdvIntel CEO, Vitali Kremez,"The state of the current cyber security market is full of uncertainties.
  • Ed Goings, KPMG National Lead for Cyber Response Services stated "Intelligence of this level is a complete game changer.
  • AdvIntel and KPMG will jointly go to market to combat cyber incidents, by providing early-warning alerting, applied threat detection, and long-term strategic threat intelligence.AdvIntel and KPMG are already working jointly with several cyber insurance providers aroundthe threat prevention and loss avoidance needs oftheir customer base.

BlackBerry 2021 Annual Threat Report Uncovers Breadth of COVID-19 Exploitation

Retrieved on: 
Wednesday, February 24, 2021

WATERLOO, ON, Feb. 24, 2021 /PRNewswire/ -- BlackBerry Limited (NYSE: BB; TSX: BB) today released the 2021 BlackBerry Threat Report, detailing a sharp rise in cyberthreats facing organizations since the onset of COVID-19.

Key Points: 
  • WATERLOO, ON, Feb. 24, 2021 /PRNewswire/ -- BlackBerry Limited (NYSE: BB; TSX: BB) today released the 2021 BlackBerry Threat Report, detailing a sharp rise in cyberthreats facing organizations since the onset of COVID-19.
  • This evolution and adoption of digital offerings exposed companies to inadequate protections for employees and customers amongst an ever-growing and under-secured attack surface.
  • "As the world becomes more interconnected and as new dimensions to cybercrime continue to rise, preparation will become a key factor in successful threat prevention in 2021."
  • Additionally, the report highlights a burgeoning crimeware-as-a-service business model as well as the increasing sophistication and collaboration of these hacker-for-hire groups.

COVID-19 Pandemic Sparks 72% Ransomware Growth, Mobile Vulnerabilities Grow 50%

Retrieved on: 
Tuesday, July 21, 2020

The report analyzes the vulnerabilities, exploits and threats in play over the first half of a year dominated by the chaos surrounding the COVID-19 pandemic.

Key Points: 
  • The report analyzes the vulnerabilities, exploits and threats in play over the first half of a year dominated by the chaos surrounding the COVID-19 pandemic.
  • They also need to be able to model their expanded network so that they can understand all potential attack vectors.
  • "We observed 77 ransomware campaigns during the first few months of the pandemic including several on mission-critical research labs and healthcare companies.
  • Their ongoing investigations determine which vulnerabilities are being exploited in the wild and used in distributedcrimewaresuch as ransomware, malware, exploit kits and other attacks exploiting client and serverside vulnerabilities.

COVID-19 Pandemic Sparks 72% Ransomware Growth, Mobile Vulnerabilities Grow 50%

Retrieved on: 
Tuesday, July 21, 2020

The report analyzes the vulnerabilities, exploits and threats in play over the first half of a year dominated by the chaos surrounding the COVID-19 pandemic.

Key Points: 
  • The report analyzes the vulnerabilities, exploits and threats in play over the first half of a year dominated by the chaos surrounding the COVID-19 pandemic.
  • They also need to be able to model their expanded network so that they can understand all potential attack vectors.
  • "We observed 77 ransomware campaigns during the first few months of the pandemic including several on mission-critical research labs and healthcare companies.
  • Their ongoing investigations determine which vulnerabilities are being exploited in the wild and used in distributedcrimewaresuch as ransomware, malware, exploit kits and other attacks exploiting client and serverside vulnerabilities.