{"id":121368,"date":"2025-01-16T11:29:21","date_gmt":"2025-01-16T11:29:21","guid":{"rendered":"https:\/\/www.intelligentcio.com\/eu\/?p=121368"},"modified":"2025-01-16T11:29:23","modified_gmt":"2025-01-16T11:29:23","slug":"ransomware-victims-and-threat-groups-have-reached-an-all-time-high","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/eu\/2025\/01\/16\/ransomware-victims-and-threat-groups-have-reached-an-all-time-high\/","title":{"rendered":"Ransomware victims and threat groups have reached an \u2018all-time high\u2019"},"content":{"rendered":"\n<p><em>New annual report from GuidePoint\u2019s Research and Intelligence Team (GRIT) reveals a 40% YoY increase in active threat groups as cybercrime ecosystem evolves.<\/em><\/p>\n\n\n\n<p>GuidePoint Security has released the GuidePoint Research and Intelligence Team\u2019s (GRIT) annual <em>Ransomware &amp; Cyber Threat Report<\/em>.<\/p>\n\n\n\n<p>The report offers exclusive in-depth research, insights and analysis on the evolving ransomware ecosystem, exploring who cybercriminals are targeting (and why), the top tactics threat actors are using and what the future may hold for emerging ransomware groups in 2025.<\/p>\n\n\n\n<p>\u201cThe GRIT 2025 Ransomware &amp; Cyber Threat Report reveals the resilience and persistence of the ransomware-as-a-service (RaaS) model, highlighting the difficulty of disrupting it,\u201d said Jason Baker, Lead Threat Analyst, GuidePoint Security.<\/p>\n\n\n\n<p>\u201cFrom major law enforcement&nbsp;disruptions&nbsp;to group shakeups and new behavior patterns, 2024 was at times a chaotic year for threat actors &#8211; yet ransomware activity and new groups continue to proliferate. Well-resourced defenders, active vulnerability management, attack surface awareness and actionable intelligence remain critical to mitigating information security risks in 2025.\u201d<\/p>\n\n\n\n<p>Noteworthy findings from this year\u2019s report include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>A record high of ransomware victims,\u00a0<\/strong>with 1,600+ ransomware victims in Q4 2024 alone\u2014the largest number recorded in a single quarter since the report\u2019s inception.<\/li>\n\n\n\n<li><strong>A 40% YoY increase in active threat groups,\u00a0<\/strong>illustrating a continually developing threat landscape. GRIT identified 88+ total active threat groups in 2024, including 40 newly observed adversaries.<\/li>\n\n\n\n<li><strong>An average of 93 ransomware victims were posted per week<\/strong>\u00a0on the dark web. RansomHub claimed the largest number of victims in 2024, displacing LockBit as the most active ransomware group for the first time since 2021.<\/li>\n\n\n\n<li><strong>The United States remains a top geographic target for ransomware attacks<\/strong>. In 2024, more than half (52%) of ransomware victims were based in the US.<\/li>\n\n\n\n<li><strong>An average of 110 Common Vulnerabilities and Exposures (CVEs) published per day,<\/strong>\u00a0underscoring the overwhelming volume and velocity of information which cybersecurity teams are facing. Almost 40,000 CVEs were reported in 2024, a 43% increase from 2023.<\/li>\n\n\n\n<li><strong>Nearly 44% of vulnerabilities were rated \u201cHigh\u201d or \u201cCritical\u201d severity.\u00a0<\/strong>However, threat actors continue to rely on historical vulnerabilities from preceding years.<\/li>\n\n\n\n<li><strong>The Manufacturing industry was most heavily impacted by ransomware<\/strong>, followed by the Technology and Retail\/Wholesale industries. Interestingly, despite several high-profile attacks in 2024, the Healthcare sector dropped out of the top three most affected industries by the end of the year.<\/li>\n<\/ul>\n\n\n\n<p>\u201cThroughout the year, we also witnessed multiple instances of significant international law enforcement operations that dealt heavy blows to various threat actors and their infrastructures,\u201d Baker said.<\/p>\n\n\n\n<p>\u201cWhile the fight is far from over, the enduring effects of these law enforcement campaigns suggest that we\u2019re developing more effective and sustainable strategies to combat our adversaries\u2014and we anticipate continued progress in 2025.\u201d<\/p>\n\n\n\n<p>The report also explores the impacts of ransomware on critical infrastructure, examines threat actor deception and misinformation efforts in 2024 and examines major ransomware events throughout the year, including the continued fallout from Operation Cronos.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>New annual report from GuidePoint\u2019s Research and Intelligence Team (GRIT) reveals a 40% YoY increase in active threat groups as cybercrime ecosystem evolves. GuidePoint Security has released the GuidePoint Research and Intelligence Team\u2019s (GRIT) annual Ransomware &amp; Cyber Threat Report. The report offers exclusive in-depth research, insights and analysis on the evolving ransomware ecosystem, exploring [&hellip;]<\/p>\n","protected":false},"author":58,"featured_media":121371,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[17482,93],"tags":[564,21800,1268],"class_list":["post-121368","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-top-stories","tag-cybersecurity","tag-guidepoint","tag-ransomware"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/121368","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/users\/58"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/comments?post=121368"}],"version-history":[{"count":1,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/121368\/revisions"}],"predecessor-version":[{"id":121370,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/121368\/revisions\/121370"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media\/121371"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media?parent=121368"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/categories?post=121368"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/tags?post=121368"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}