CyberTalk

Top insights from the most notorious ransomware attacks & attackers

Ransomware concept art

EXECUTIVE SUMMARY:

Let’s out-innovate ransomware! Thanks to the latest technological advancements and expert insights, you might be closer to achieving this goal than you think. Stop next-generation attacks and their culprits.

In the past 30 years, ransomware attacks have proliferated at a dizzying pace, victimizing millions of organizations and causing billions of dollars in losses.

Ransomware attacks are one of the most pernicious and difficult-to-stop forms of cyber crime today. At present, ransomware represents a top concern for organizations of all sizes, across all industries.

Awareness of cyber security weaknesses, best practices and leading security solutions are critical in mitigating ransomware risks.

This article will explore the most insidious ransomware attacks and attackers of recent years, enabling you to identify practices that will protect your organization.

Statistics

1. WannaCry. In May of 2017, the WannaCry ransomware worm spread across computer networks with unprecedented ferocity and agility. The attack affected over 300,000 computers in more than 150 countries around the world, and is estimated to have caused as much as $4 billion in damages.

Key takeaways

2. Ryuk ransomware. The first Ryuk ransomware attacks were detected in August of 2018. Ryuk ransomware typically targets organizations and encrypts files. In the past, Ryuk has affected hospitals, local governments and major corporations. It’s considered one of the most dangerous types of ransomware in circulation.

Key takeaways

3. DoppelPaymer. The DoppelPaymer attack was significant on account of the fact that it was one of the largest and most high-profile ransomware attacks of its time. Emerging in mid 2019, it quickly gained notoriety for its sophisticated encryption methods and its ability to evade detection by many antivirus programs.

The attack primarily targeted large corporations and organizations, such as the German automotive supplier, Gedia and the U.S. city of Torrance. Investigators estimated that the attackers behind DoppelPaymer managed to extort victims for millions of dollars.

Key takeaways

4. LockBit. LockBit gained notoriety in 2021, after developing Ransomware-as-a-Service tools and employing a double extortion tactic through which to blackmail victims.

LockBit is among the world’s most active ransomware groups, and is responsible for an estimated 40% of ransomware infections worldwide.

The group primarily targets small and medium-sized businesses, although it has also targeted larger entities.

Key takeaways

5. Conti ransomware. Since Conti’s emergence, the group has become one of the most prevalent ransomware families in-use. One of Conti’s most notable capabilities consists of its ability to encrypt large volumes of data quickly and efficiently.

The attackers behind the operation are also known for their high level of organization and sophistication, and for their selectivity concerning their targets. For the most part, Conti focuses on large, high-value enterprises, such as healthcare providers, government agencies, and financial institutions.

Key takeaways

In conclusion

When it comes to avoiding the most aggressive ransomware attacks and attackers, prevention measures are essential. Adhere to the basics and also ensure that your organization stays up-to-date with the latest ransomware prevention best practices.

Read more about ransomware prevention here. Lastly, to receive more cutting-edge cyber security news, best practices and analyses, please sign up for the CyberTalk.org newsletter.

Exit mobile version