Year in Review: The biggest trends in ransomware
勒索软件在2024年通过低姿态策略引发高影响事件,攻击者优先隐秘而非复杂性,利用常见工具绕过防御。新兴勒索软件即服务玩家迅速崛起,成为第二大活跃操作者。目标行业通常是安全预算低、监控不力但数据敏感的领域。 2025-4-15 10:1:50 Author: blog.talosintelligence.com(查看原文) 阅读量:3 收藏

This week, our Year in Review spotlight is on ransomware—where low-profile tactics led to high-impact consequences.

Ransomware operators often prioritized stealth over complexity for initial access. They also focused on slipping past defenses with minimal noise—uninstalling security tools, creating new firewall rules for remote access, and using common, freely available tools.

The ransomware-as-a-service landscape also paints an interesting picture. A new player quickly rose through the ranks, becoming the second most prolific operator by targeting large payouts.

Something that hasn't really changed over the years is the sectors that ransomware actors target most heavily - favouring industries that typically have lower security budgets, irregular monitoring, but highly sensitive data.

We’ve pulled together the most significant insights in a quick, 2-page PDF:

If you only have 55 seconds? Watch this video:

For the full analysis, download Talos' 2024 Year in Review.


文章来源: https://blog.talosintelligence.com/year-in-review-ransomware/
如有侵权请联系:admin#unsafe.sh