Ransomware Threat Landscape Evolves: 30% Increase in Active Groups and AI's Growing Role in Cybercrime

2 Sources

Secureworks' 2024 State of the Threat Report reveals a significant rise in ransomware groups, changes in attack strategies, and the increasing use of AI in cybercrime, highlighting new challenges for cybersecurity.

News article

Ransomware Landscape Transformation

Secureworks' 2024 State of the Threat Report has unveiled a significant shift in the ransomware ecosystem. The report indicates a 30% year-over-year increase in active ransomware groups, with 31 new entities entering the scene in the past 12 months 12. This surge reflects a fragmentation of the established criminal ecosystem, largely attributed to successful law enforcement operations that have disrupted major ransomware operations.

Emerging Trends in Attack Strategies

The ransomware landscape, once dominated by a few major players, now hosts a broader array of emerging groups. This diversification has led to less predictability in attack methodologies, presenting new challenges for organizations. The median dwell time for attacks has been recorded at 28 hours, though there's considerable variation, with some groups executing rapid "smash-and-grab" attacks while others maintain prolonged network presence 1.

Don Smith, VP Threat Intelligence at Secureworks Counter Threat Unitâ„¢ (CTUâ„¢), emphasized the evolving nature of the ransomware business model: "Ransomware is a business that is nothing without its affiliate model. In the last year, law enforcement activity has shattered old allegiances, reshaping the business of cybercrime" 1.

AI and AiTM: New Frontiers in Cybercrime

The report highlights two significant technological trends in cybercrime:

  1. AiTM (Adversary-in-the-Middle) Attacks: Threat actors are increasingly using AiTM attacks to steal credentials and session cookies, potentially undermining multi-factor authentication (MFA) systems. These attacks are facilitated by phishing kits available on underground marketplaces and platforms like Telegram 12.

  2. Artificial Intelligence in Cybercrime: Since mid-February 2023, there has been a notable increase in discussions about leveraging AI tools like OpenAI's ChatGPT for malicious purposes on underground forums. While much of this activity focuses on low-level tasks such as phishing and basic script creation, more sophisticated applications are emerging 12.

Novel AI-Driven Fraud Techniques

One innovative example of AI use in cybercrime involves "obituary pirates." These threat actors monitor Google trends following deaths, use generative AI to create lengthy tributes, and manipulate search results through SEO poisoning. This tactic directs users to sites containing adware or potentially unwanted programs 12.

State-Sponsored Threat Activity

The report also provides insights into state-sponsored cyber activities:

  • China: Continues to focus on information theft for political, economic, and military gain, aligning with the Chinese Communist Party's Five Year Plan objectives 12.

  • Iran: Primarily targets Israel, regional adversaries, and the US, often using fake hacktivist personas for plausible deniability 1.

  • North Korea: Pursues revenue generation through cryptocurrency theft and sophisticated fraudulent employment schemes, targeting the IT sector and supply chain weaknesses 2.

  • Hamas: Three threat groups associated with Hamas have been identified, marking an increase in activity since the outbreak of the Israel-Hamas conflict 2.

Implications for Cybersecurity

The evolving landscape of ransomware and the increasing role of AI in cybercrime present significant challenges for network defenders. Organizations must adapt to a wider variety of tactics and remain vigilant against an expanding array of threat actors. The rise of AiTM attacks particularly underscores the need for robust identity protection measures beyond traditional MFA systems 12.

Explore today's top stories

NVIDIA Unveils Major GeForce NOW Upgrade with RTX 5080 Performance and Expanded Game Library

NVIDIA announces significant upgrades to its GeForce NOW cloud gaming service, including RTX 5080-class performance, improved streaming quality, and an expanded game library, set to launch in September 2025.

CNET logoengadget logoPCWorld logo

10 Sources

Technology

23 hrs ago

NVIDIA Unveils Major GeForce NOW Upgrade with RTX 5080

Nvidia Develops New AI Chip for China Amid Geopolitical Tensions

Nvidia is reportedly developing a new AI chip, the B30A, based on its latest Blackwell architecture for the Chinese market. This chip is expected to outperform the currently allowed H20 model, raising questions about U.S. regulatory approval and the ongoing tech trade tensions between the U.S. and China.

TechCrunch logoTom's Hardware logoReuters logo

11 Sources

Technology

1 day ago

Nvidia Develops New AI Chip for China Amid Geopolitical

SoftBank's $2 Billion Investment in Intel: A Strategic Move in the AI Chip Race

SoftBank Group has agreed to invest $2 billion in Intel, buying common stock at $23 per share. This strategic investment comes as Intel undergoes a major restructuring under new CEO Lip-Bu Tan, aiming to regain its competitive edge in the semiconductor industry, particularly in AI chips.

TechCrunch logoTom's Hardware logoReuters logo

18 Sources

Business

16 hrs ago

SoftBank's $2 Billion Investment in Intel: A Strategic Move

Databricks Secures $100 Billion Valuation in Latest Funding Round, Highlighting AI Sector's Rapid Growth

Databricks, a data analytics firm, is set to raise its valuation to over $100 billion in a new funding round, showcasing the strong investor interest in AI startups. The company plans to use the funds for AI acquisitions and product development.

Reuters logoAnalytics India Magazine logoU.S. News & World Report logo

7 Sources

Business

8 hrs ago

Databricks Secures $100 Billion Valuation in Latest Funding

OpenAI Launches Affordable ChatGPT Go Plan in India, Eyeing Global Expansion

OpenAI introduces ChatGPT Go, a new subscription plan priced at ₹399 ($4.60) per month exclusively for Indian users, offering enhanced features and affordability to capture a larger market share.

TechCrunch logoBloomberg Business logoReuters logo

15 Sources

Technology

16 hrs ago

OpenAI Launches Affordable ChatGPT Go Plan in India, Eyeing
TheOutpost.ai

Your Daily Dose of Curated AI News

Don’t drown in AI news. We cut through the noise - filtering, ranking and summarizing the most important AI news, breakthroughs and research daily. Spend less time searching for the latest in AI and get straight to action.

© 2025 Triveous Technologies Private Limited
Instagram logo
LinkedIn logo