Ransomware Rampage: Industrial Giants Crumble as Cybercriminals Evolve Tactics in 2024
Dragos identified 23 ransomware groups targeting industrial sectors, with some being new or rebranded. APT73, linked to LockBit affiliates, introduced new tactics. Industries with low downtime tolerance, like healthcare, were prime targets. Notably, CDK paid $25m to BlackSuit, and Halliburton lost $35m to RansomHub in Q3 2024.

Hot Take:
Looks like ransomware groups are really embracing their entrepreneurial spirit, with mergers, acquisitions, and a flair for the dramatic, targeting industries that literally can’t afford to take a day off. It’s like Shark Tank, but with more sharks and fewer tanks!
Key Points:
- 23 ransomware groups targeted industrial organizations in Q3 2024, according to Dragos.
- Some groups are new, others are rebranded old ones, like APT73.
- Ransomware attacks focused on low downtime tolerance industries such as healthcare and financial services.
- High-profile incidents include CDK paying $25m to BlackSuit and Halliburton losing $35m due to RansomHub.
- Ransomware tactics have evolved, focusing on VPN vulnerabilities and virtual environments.
Already a member? Log in here