iTWire - Rapid7 Ransomware Radar Report charts ransomware group activity and methodologies for fresh insights (2024)

GUEST RESEARCH: Rapid7, a leader in extended risk and threat detection, today announced the release of its Ransomware Radar Report in conjunction with the company’s presence at Black Hat USA. The all-new research report provides a fresh perspective on the global ransomware threat by analysing, comparing, and contrasting attacker activity and techniques over an 18-month period ending 30 June 2024.

According to the report, ransomware groups continue to refine their craft, building and scaling business models that resemble legitimate corporate enterprises. They market their services to prospective buyers, offer company insiders commissions in exchange for access, and run formal bug bounty programs. In addition, Rapid7 researchers found three major clusters of ransomware families with similar source code, indicating that ransomware groups are focusing their development efforts on quality over quantity.

“The Ransomware Radar Report uses data to tell the story of how ransomware and the threat actors that wield it are evolving,” said Rapid7 senior director, threat analytics Christiaan Beek. “For example, the related source code, combined with a continuing decline in the number of unique ransomware families, suggests a move toward more specialised and highly effective ransomware variants, rather than a broad array of less sophisticated malware.”

Additional key findings from the Ransomware Radar Report include:

21 new groups have surfaced: Within the first six months of 2024, Rapid7 observed 21 new ransomware groups entering the scene. Some of these groups are brand new while others are previously known groups rebranding under a new name. One of the most notable of these new groups, RansomHub, has quickly established itself as a prominent extortion group by making 181 posts to its leak site between 10 February and 30 June 2024.

Leak site posts are up 23%: Each leak site post represents an extortion attempt. The number of ransomware groups actively posting to leak sites is increasing, from an average of 24 groups posting per month in the first half (H1) of 2023 to 40 per month in H1 2024. Furthermore, 68 ransomware groups made a total of 2,611 leak site posts between January and June, representing a 23% increase in the number of posts made in H1 2023.

Smaller organisations have become a more frequent target: In examining the revenue distribution of companies listed within access broker postings, Rapid7 noted that companies with annual revenues around US$5 million are falling victim to ransomware twice as often as those in the US$30-50 million range and five times more frequently than those with a US$100 million revenue. This finding could suggest that such companies are large enough to hold valuable data but not as well protected as their larger counterparts.

“The report’s insights into the ransomware landscape are crucial for informing Defenders’ cybersecurity strategies,” said Beek. “From our own detection engineering point of view, the clusters and additional report information, such as the usage and type of encryption algorithms, help us uplevel hunting techniques and prevention, detection, and response technologies. Rapid7 continually investigates new techniques used by threat actors and ransomware operators, tests them against our patented Ransomware Prevention technology, and creates new preventions to ensure customers are protected against the latest threats.”

Security practitioners and other stakeholders fighting ransomware can access the full report now here.The schedule of Rapid7’s Black Hat USA events and on-site meeting request form are both available here.

About the Ransomware Radar Report
The Rapid7 Ransomware Radar Report provides a comprehensive analysis of ransomware incidents and binaries recorded and gathered globally, offering insights into trends, attacker profiles, ransomware families, and the implications for cybersecurity defences. The data used for the report comes from Rapid7’s incident response teams and independent Rapid7 Labs research. The ransomware sample dataset used consists of (i) prevalent and available ransomware families from 2023 which continued their operations into 2024, and (ii) new 2024 ransomware samples that were observed until the end of June 2024.

About Rapid7
Rapid7 is on a mission to create a safer digital world by making cybersecurity simpler and more accessible. We empower security professionals to manage a modern attack surface through our best-in-class technology, leading-edge research, and broad, strategic expertise. Rapid7’s comprehensive security solutions help more than 11,000 global customers unite cloud risk management with threat detection and response to reduce attack surfaces and eliminate threats with speed and precision. For more information, visit our website, check out our blog, or follow us on LinkedIn or X.

Subscribe to ITWIRE UPDATE Newsletter here
JOIN our iTWireTV our YouTube Community here
BACK TO LATEST NEWS here

iTWire - Rapid7 Ransomware Radar Report charts ransomware group activity and methodologies for fresh insights (2024)
Top Articles
Can I Use Kelley Blue Book for My California Car Accident Claim? | Avrek Law Firm
13 Spots for the Best Poke in Maui (2024)
Fiat 600e: Dolce Vita auf elektrisch
Milkhater05 Of
Refinery29 Horoscopes
Nycers Pay Schedule
Big 12 Officiating Crew Assignments 2022
Wowhead Filling The Cages
Lox Club Gift Code
Pa Pdmp Log In
What's the Difference Between Halal and Haram Meat & Food?
Equity Livestock Altoona Market Report
Nyu Paralegal Program
Craigslist Cars For Sale By Owner Oklahoma City
1800Comcast
Gopher Hockey Forum
What Times What Equals 82
Nancy Pazelt Obituary
Toothio Login
9xMovies: The Ultimate Destination for Free Movie Downloads
Truecarcin
Integral2 seems to substitute non-scalar values of variable into in...
Emojiology: 🤡 Clown Face
25+ Twitter Header Templates & Design Tips - Venngage
Lvc Final Exam Schedule
Couches To Curios Photos
Coil Cleaning Lititz
How to Start a Travel Agency: Steps and Tips | myPOS
University Of Arkansas Grantham Student Portal
인민 을 위해 복무하라 다시보기
Tamara Lapman
Wolf Of Wallstreet 123 Movies
Sport & Fitness in Hainbuch: Zubehör & Ausrüstung günstig kaufen
Nikki Porsche Girl Head
Dki Brain Teaser
Pain Out Maxx Kratom
Kirby D. Anthoney Now
Miawaiifu
Marie Anne Thiebaud 2019
Bolly4u Movies Site - Download Your Favorite Bollywood Movies Here
Was Man über Sprints In Scrum-Projekten Wissen Sollte | Quandes
How To Use DeSmuME Emulator To Play Nintendo DS Games?
80s Z Cavaricci Pants
How to Survive (and Succeed!) in a Fast-Paced Environment | Exec Learn
2026 Rankings Update: Tyran Stokes cements No. 1 status, Brandon McCoy, NBA legacies lead loaded SoCal class
Plusword 358
Trực tiếp bóng đá Hà Nội vs Bình Định VLeague 2024 hôm nay
Puppiwi World : Age, Height, Family, Relationship Status, Net Worth, Wiki, and More Including Exclusive Insights! WikistarFact
11 Fascinating Axolotl Facts
Kirstin Kresse
9372034886
Gulfstream Park Entries And Results
Latest Posts
Article information

Author: Manual Maggio

Last Updated:

Views: 6400

Rating: 4.9 / 5 (49 voted)

Reviews: 80% of readers found this page helpful

Author information

Name: Manual Maggio

Birthday: 1998-01-20

Address: 359 Kelvin Stream, Lake Eldonview, MT 33517-1242

Phone: +577037762465

Job: Product Hospitality Supervisor

Hobby: Gardening, Web surfing, Video gaming, Amateur radio, Flag Football, Reading, Table tennis

Introduction: My name is Manual Maggio, I am a thankful, tender, adventurous, delightful, fantastic, proud, graceful person who loves writing and wants to share my knowledge and understanding with you.