Date Detected: 2/2024
Type:Ransomware
Attack Vector: phishing emails (67% of attacks in North America), software vulnerabilities (32% of attacks), RDP compromise (30% in SMBs), stolen credentials (29%), unmanaged third-party integrations (25%), zero-day exploits (e.g., MOVEit), RaaS (Ransomware-as-a-Service), botnet malware (e.g., Qakbot, DanaBot), AI-generated phishing lures, unpatched systems
Motivation: financial gain (ransom payments, data extortion), disruption of critical infrastructure (e.g., healthcare, supply chains), data theft for dark web sales (e.g., PII, medical records), espionage (e.g., state-linked DanaBot attacks), reputation damage (e.g., leaking sensitive data)