1
Threat Overview
Ransomware gangs are shifting from encryption to pure extortion, focusing on stolen data and reputational pressure. This new tactic affects organizations worldwide, exploiting the fear of data breaches and public exposure. Attackers use stealthier methods to steal sensitive information.
2
Key Intelligence Points
1. Ransomware groups are using pure extortion tactics, focusing on stolen data and reputational pressure. 2. This new tactic affects organizations worldwide, exploiting the fear of data breaches and public exposure. 3. Attackers use stealthier methods to steal sensitive information, often avoiding encryption. 4. Detection opportunities include monitoring for suspicious data exfiltration and unusual network activity.
3
MITRE ATT&CK Techniques
T1059.001: Command and Scripting Interpreter: Windows Command Shell T1040: Network Sniffing
4
Mitigation & Detection
Implement robust data backup and recovery procedures, and monitor for suspicious data exfiltration and unusual network activity to detect potential attacks.