Emerging Threat Landscape: 167 New Ransomware Groups Emerge in Q1 2023
Emerging Threat Landscape: 167 New Ransomware Groups Emerge in Q1 2023
  • Yoo Mi-ja
  • 승인 2023.05.16 08:51
  • 댓글 0
이 기사를 공유합니다

Articles By Edithm

The first quarter of 2023 has witnessed a significant surge in the discovery of ransomware groups, underscoring the escalating risks in the cybersecurity realm. BitcoinCasinos' latest findings reveal that a staggering total of 167 new ransomware groups were identified during this period, indicating a substantial increase in malicious activities targeting individuals and organizations.

Edith Reads, a financial expert at BitcoinCasinos, expressed concern over these statistics, emphasizing the burgeoning threat landscape. She pointed out that many of these groups exploit vulnerabilities, particularly those associated with cryptocurrency exchanges and wallets, highlighting the need for enhanced security measures.

Among the plethora of ransomware groups, two notable threats have garnered attention: Medusa and Nevada Ransomware. These malicious entities primarily focus on infiltrating Windows-based systems, encrypting files, and demanding ransom payments in exchange for decrypting the compromised data. The intricate nature of their malicious codes makes it challenging to detect and eliminate these threats from infected systems.

Medusa Ransomware, which first emerged in early 2021, gained prominence in 2023 through its blog and the introduction of double extortion tactics to pressure victims into meeting ransom demands. The Minneapolis Public Schools (MPS) was among the high-profile victims targeted by Medusa ransomware in the first quarter of 2023. The perpetrators released a video showcasing some of the stolen data as proof of their successful breach of the MPS network, reportedly compromising 20 additional victims within the first two months of the quarter.

Another significant ransomware strain making headlines in Q1 2023 is Nevada Ransomware. This malicious software was initially discovered on December 10, 2021, when an announcement was made to recruit new members for their Ransomware-as-a-Service scheme. Built with the Rust programming language, Nevada ransomware is currently under development. The group claims that its encryption module can target Windows machines, Linux machines, and ESXi environments.

The Nevada ransomware campaign has primarily focused on targeting companies in the US and Europe, although the long-term extent of their damage remains uncertain. However, the impact of this new ransomware group in the first quarter of 2023 is evident, with an estimated 3,200 victims affected thus far.

To safeguard against the evolving and sophisticated nature of ransomware attacks, individuals and organizations must take proactive measures. This includes implementing robust cybersecurity protocols, regularly backing up data, and educating employees on recognizing and mitigating phishing attacks.

Furthermore, it is crucial for victims of ransomware attacks to refrain from paying the ransom, as this only incentivizes ransomware groups to perpetuate their illegal activities. Instead, victims should seek assistance from cybersecurity experts to decrypt their files and promptly report the attack to law enforcement agencies.

Source: BitcoinCasinos.


댓글삭제
삭제한 댓글은 다시 복구할 수 없습니다.
그래도 삭제하시겠습니까?
댓글 0
댓글쓰기
계정을 선택하시면 로그인·계정인증을 통해
댓글을 남기실 수 있습니다.

  • ABOUT
  • CONTACT US
  • SIGN UP MEMBERSHIP
  • RSS
  • 2-D 678, National Assembly-daero, 36-gil, Yeongdeungpo-gu, Seoul, Korea (Postal code: 07257)
  • URL: www.koreaittimes.com | Editorial Div: 82-2-578- 0434 / 82-10-2442-9446 | North America Dept: 070-7008-0005 | Email: info@koreaittimes.com
  • Publisher and Editor in Chief: Monica Younsoo Chung | Chief Editorial Writer: Hyoung Joong Kim | Editor: Yeon Jin Jung
  • Juvenile Protection Manager: Choul Woong Yeon
  • Masthead: Korea IT Times. Copyright(C) Korea IT Times, All rights reserved.
ND소프트