HomeSecurity ArchitectureRecord $1.1B in Ransomware Payments Made in 2023

Record $1.1B in Ransomware Payments Made in 2023

Published on

spot_img

A blockchain analysis firm, Chainanalysis, reported that ransomware attacks hit record levels in 2023, with ransom payments nearly doubling to a total of $1.1 billion. The firm noted that hackers are increasingly using a “big game hunting” strategy to target global corporations and large companies in search of larger payouts.

The increased ransomware payment volume involved payments of $1 million or more, with hospitals, schools, and government agencies also frequently targeted. Chainanalysis researchers described 2023 as a major comeback for ransomware, with record-breaking payments and a substantial increase in the scope and complexity of attacks.

The gambling industry has been a prime target for ransomware attacks, particularly online gaming sites. However, hackers are now increasingly targeting land-based casino operators, including major players in the industry.

One notable hacking group, known as “Scattered Spider” or “Octo Tempest,” launched devastating ransomware attacks on MGM Resorts International and Caesars Entertainment in September 2023. MGM refused to pay the ransom, resulting in disruptions that lasted for days and caused an estimated $100 million in damage. In contrast, Caesars paid the hackers around $15 million to have normal operations restored.

Scattered Spider is characterized as an amorphous group of English-speaking hackers that has engaged in various crimes, including ransomware, sextortion, and phone scams. The group’s shift to “big game hunting” represents a diversification of cybercrime threats, which have traditionally been associated with East European criminal gangs or state-sponsored hackers.

Despite the increasing ransomware attacks, the report also acknowledged the progress made by law enforcement in combatting such crimes. The FBI, in particular, infiltrated a group known as “Hive” in 2022, which contributed to a significant reduction in attacks that year. The agency provided decryption keys to over 1,300 of Hive’s victims, preventing the need for ransom payments and ultimately preventing approximately $130 million in payments in 2022.

Source link

Latest articles

Iranian VPN-over-DNS Activity Produces 40 Billion DNS Observations Amid Military Conflict

Surge in Suspected Iranian VPN-over-DNS Activity Generates Unprecedented Data Observations A recent investigation has revealed...

When Everything Seems Normal: Why Context, Not More Alerts, is the Next Frontier for Security Operations

The Evolving Landscape of Security Awareness: Beyond the Surface In an ever-evolving cybersecurity landscape, security...

Ransomware Affiliate Betrays Operator to Steal Victim Funds

Betrayal in the Ransomware Underworld: Russian-Speaking Cybercriminal Skims Profits from Victims In a revelation that...

Security Trails AI Implementation

The AI Velocity Paradox: Security Risks in Autonomous AI Implementation In a rapidly evolving technological...

More like this

Iranian VPN-over-DNS Activity Produces 40 Billion DNS Observations Amid Military Conflict

Surge in Suspected Iranian VPN-over-DNS Activity Generates Unprecedented Data Observations A recent investigation has revealed...

When Everything Seems Normal: Why Context, Not More Alerts, is the Next Frontier for Security Operations

The Evolving Landscape of Security Awareness: Beyond the Surface In an ever-evolving cybersecurity landscape, security...

Ransomware Affiliate Betrays Operator to Steal Victim Funds

Betrayal in the Ransomware Underworld: Russian-Speaking Cybercriminal Skims Profits from Victims In a revelation that...