
Extortion and Ransomware Trends January-March 2025
Ransomware leak site data and Unit 42 case studies reveal new trends from Q1 2025, including the most active groups, targeted industries and novel extortion tactics. Ransomware leak site data and Unit 42 case studies reveal new trends from Q1 2025, including the most active groups, targeted industries and novel extortion tactics.
Unit 42
Jumpy Pisces Engages in Play Ransomware
A first-ever collaboration between DPRK-based Jumpy Pisces and Play ransomware signals a possible shift in tactics.
Unit 42"Threat Assessment: North Korean Threat Groups" published by PaloaltoNetworks.
#AlluringPisces,
#CollectionRAT,
#Comebacker,
#Fullhouse,
#GleamingPisces,
#JumpyPisces,
#KANDYKORN,
#ObjCShellz,
#OdicLoader,
#POOLRAT,
#PondRAT,
#RustBucket,
#SelectivePisces,
#SlowPisces,
#SmoothOperator,
#SparklingPisces,
#DPRK,
#CTI https://unit42.paloaltonetworks.com/threat-assessment-north-korean-threat-groups-2024/
Threat Assessment: North Korean Threat Groups
Explore Unit 42's review of North Korean APT groups and their impact, detailing the top 10 malware and tools we've seen from these threat actors. Explore Unit 42's review of North Korean APT groups and their impact, detailing the top 10 malware and tools we've seen from these threat actors.
Unit 42