Ransomware attacks continue to dominate the threat landscape
Ransomware attacks often rely on trojans to infect computers and steal information. Such commodity trojans as Emotet and Trickbot are two of the top players in the game as cybercriminals try to exfiltrate sensitive data that can be held hostage. But as ransomware continues to dominate as a cyberthreat, criminals are increasingly carrying out attacks using Cobalt Strike, an otherwise ethical testing framework. A new report from threat intelligence group Cisco Talos Incident Response (CTIR) describes this trend.
In a blog post published Tuesday discussing the report, CTIR said that it observed ransomware dominating the threat landscape last quarter for the fifth quarter in a row. Ransomware infections tapped into an array of malware families, including Ryuk, Maze, LockBit, and Netwalker. However, another tactic has continued to appear.
Ransomware attacks are now relying less on commodity trojans such as Emotet and Trickbot and more on Cobalt Strike, a powerful toolkit designed for threat emulation and penetration testing.