HomeCII/OTSurge in Dual Ransomware Attacks Coincides with CSAM 2023

Surge in Dual Ransomware Attacks Coincides with CSAM 2023

Published on

spot_img

The Cybersecurity and Infrastructure Security Agency (CISA) has recently launched a new cybersecurity awareness initiative called ‘Secure Our World’ as part of the 20th anniversary of Cybersecurity Awareness Month. The goal of this campaign is to raise awareness about the growing threat of dual ransomware attacks, which have been identified by the FBI.

The ‘Secure Our World’ campaign will be integrated into all of CISA’s existing campaigns and initiatives, with a particular focus on encouraging individuals, families, and small to medium-sized businesses to take daily actions to protect themselves online and when using connected devices.

The term ‘Dual Ransomware Attacks’ has been coined by the FBI to describe a new trend in cyber attacks. These attacks involve two separate ransomware variants being deployed against a single victim, causing more damage and increasing the difficulty of recovery. The first ransomware variant is followed by a second attack using a different strain, compounding the damage and making it harder for the victim to regain control of their systems and data.

While Cybersecurity Awareness Month aims to empower users to change their behavior and adopt safer online practices, the rise of dual ransomware attacks poses a significant threat to organizations worldwide. The ‘Secure Our World’ campaign serves as a countermeasure to these attacks, emphasizing the importance of proactive cybersecurity measures and encouraging individuals and businesses to take steps to protect themselves.

According to the FBI, hackers targeting organizations have become increasingly aggressive, with some targeting the same victim multiple times within a short period. Shockingly, most of these dual attacks occur within a 48-hour window, putting the victims under immense pressure. The FBI has also observed an increase in the use of malware, data theft, and wiper tools by threat actors to coerce ransomware victims into negotiation.

In order to protect against dual ransomware attacks, the FBI advises anyone with information on suspicious activity to come forward and provide details on the incident. They also recommend that organizations establish strong relationships with their local FBI Field Office to facilitate cooperation and exchange of information.

Some threat actors have been observed using multiple ransomware strains within a single attack, while others have sold access to different ransomware groups, resulting in rapid successive assaults on the same victim. This puts additional pressure on the victims, who are forced to make multiple payments for data decryption and recovery.

To help network defenders combat these threats, the FBI has outlined several recommended mitigations. These include maintaining offline backups of critical data, encrypting all backups, thoroughly vetting the security measures of third-party vendors, and implementing policies that only allow authorized programs to run. Furthermore, they suggest developing a robust recovery plan and maintaining multiple copies of sensitive information.

It is essential for individuals and organizations to stay vigilant and implement strong cybersecurity measures to protect themselves against the rising threat of dual ransomware attacks. The ‘Secure Our World’ campaign aims to provide the necessary awareness and resources to help individuals and businesses mitigate cybersecurity risks and safeguard their digital assets.

Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. The Cyber Express assumes no liability for the accuracy or consequences of using this information.

Source link

Latest articles

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

 The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting...

Meta denies viral claims about data breach affecting 17.5 million Instagram users, but change your password anyway

 Millions of Instagram users panicked over sudden password reset emails and claims that...

E-commerce platform breach exposes nearly 34 million customers’ data

 South Korea's largest online retailer, Coupang, has apologised for a massive data breach...

Fortinet Warns of Active Exploitation of FortiOS SSL VPN 2FA Bypass Vulnerability

 Fortinet on Wednesday said it observed "recent abuse" of a five-year-old security flaw in FortiOS...

More like this

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

 The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting...

Meta denies viral claims about data breach affecting 17.5 million Instagram users, but change your password anyway

 Millions of Instagram users panicked over sudden password reset emails and claims that...

E-commerce platform breach exposes nearly 34 million customers’ data

 South Korea's largest online retailer, Coupang, has apologised for a massive data breach...