Four extremely active ransomware organizations were discovered by cybersecurity researchers at Palo Alto

Aug 24, 2021 16:14 GMT  ·  By

Researchers identified 4 new ransomware gangs that are targeting businesses and key infrastructure, according to The Hacker News

Ransomware attacks nowadays did not only increase in frequency and intensity, but went beyond financial gain, posing a threat to the national security of firms, hospitals, schools, and governments worldwide. Palo Alto Networks' Unit 42 threat intelligence team notes "While the ransomware crisis appears poised to get worse before it gets better, the cast of cybercrime groups that cause the most damage is constantly changing".

While we did not hear too much of them lately compared to previous years, Unit 42 says this is just the calm before the storm. Let's explore the latest ransomware kits on the market and the groups behind them.

AvosLocker

AvosLocker is a late-June ransomware company that exploits press announcements to recruit members. The cartel is charged with attacks on 6 organizations so far and is known for asking compensation ranging from $50,000 to $75,000.

Hive

Hive is another group that emerged in the same month as AvosLicker and it seems to be very prolific. In fact, it managed to target several medical providers and intermediary organizations, including a European airline and 3 U.S. companies and counts additional victims in the Netherlands, Norway, Portugal, Thailand, and United Kingdom.

HelloKitty

A ransomware version of HelloKitty was revealed to target Linux systems using an ESXi hypervisor for VMWare. According to the experts, the identified versions affected five companies in Germany, Italy, Australia, the USA, and the Netherlands.

LockBit 2.0

Encryption speed and self-propagation capabilities are among the hallmarks of LockBit 2.0, a ransomware gang that needs no presentation. The organization claims to have the world's fastest encryption software and also distributes a data stealer called StealBit. Making it debut in June 2021, LockBit 2.0 has managed to compromise 52 organizations in consulting, retail, finance, non-profit energy, automotive, high-tech, legal services, law enforcement, logistics, hospitality, insurance, accounting, manufacturing, engineering, and transportation industries spanning across Romania, Germany, Argentina, Italy, Austria, Brazil, Switzerland, the U.S, and the U.K.