Weaponized Ransomware Surges as Cybercriminals Target Supply Chains

Ransomware vulnerabilities grow by 29% as 40 advanced threat groups weaponize exploits to devastating effect. Organizations face massive financial losses and extended downtime from these increasingly sophisticated attacks.

Cybercriminals continuously target zero-day vulnerabilities and execute supply chain attacks to increase the success rate of their ransomware campaigns. Ivanti's latest report reveals a 29% growth in ransomware-related common vulnerabilities and exposures, climbing from 223 to 288 in just one year. Attackers also actively search for weaknesses in end-of-life products and fine-tune vulnerability chaining to maximize their impact.

Global ransomware attacks surge dramatically, with SonicWall recording a 148% increase to 495 million attacks in 2021. The financial and operational toll on businesses is severe, as organizations pay an average of $220,298 and endure 23 days of downtime per incident. This extended disruption causes lasting damage to business operations, brand reputation, and customer relationships.

Weaponized ransomware evolves rapidly through ransomware-as-a-service and other platform-based models that allow attacks to scale efficiently. Researchers identify 32 new ransomware families in 2021, bringing the total to 157 families that exploit 288 vulnerabilities. Public exploit codes exist for 57% of these vulnerabilities, including 109 that allow remote code execution, making it easier for a growing roster of 40 advanced persistent threat groups to launch devastating campaigns.

Read More at the original source →