当前位置:首页 > 报告详情

突破“不良行为者”——将威胁情报转化为 RaaS 弹性.pdf

上传人: 可*** 编号:991908 2025-12-07 15页 1.78MB

1、May 20251PwC Threat IntelligenceBreaking Bad Actors:Transforming Threat Intelligence into RaaS ResilienceIntroductionsTina MacaireStrategic Crime LeadPwCTina is a Senior Associate on PwCsGlobal Threat Intelligence(GTI)team,where she supports the production ofstrategic,threat,and tactical Threat Inte

2、lligenceStrategic IntelligenceIntelligence as modelOpen-Source Intelligence(OSINT)Application of analytical techniquesSohan LokulaNorth Korea-based Threats LeadPwCSohan is a Senior Associate in PwCs GlobalThreatIntelligence(GTI)team,withaprimary focus on Crime and APAC-basedthreat actors.Threat Inte

3、lligenceOpen-Source Intelligence(OSINT)Deep and Dark Web ITLP:WHITEMay 20253PwC Threat IntelligenceReal World CrimeCyber CrimeReal World Crime vs Cyber CrimeMay 20254PwC Threat Intelligence2023 vs 2024 vs 2025 ransomware leak victims4,83793total leak site victims in 2024ransomware threat actors in 2

4、0242024 Top 10 Sectors%change from 2023 to 20241.Manufacturing+39.1%2.Professional Services+18.2%3.Construction+92.3%4.Technology+30%5.Healthcare+68.7%6.Retail+66.5%7.Legal+26.5%8.Education-20.5%9.Food&Agriculture+89.0%10.Government+39%May 20255PwC Threat Intelligence01020304050600100200300400500600

5、700800JanuaryFebrauryMarchAprilMayJuneJulyAugustSeptemberOctoberNovemberDecemberVictimsNumber of active Ransomware operatorsLE reveal of LockBitSuppLE action targeting White Dev 101(ALPHV,BlackCat)and White Janus(LockBit)RansomHub first recorded leak site victims2024 Leak site victims vs active rans

6、omware operatorsMay 20256PwC Threat Intelligence22117383510455401606551958137110100100010000500+victims200-499 victims100-199 victims50-99 victims10-49 victimsFewer than 10 victims#of RaaS operators#of combined victims*This is a logarithmic graphVictim dispersion amongst ransomware operatorsMay 2025

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
根据《Breaking Bad Actors: Transforming Threat Intelligence into RaaS Resilience》报告,以下是全文关键点: 1. 恶意软件即服务(RaaS)威胁日益增加,2024年勒索软件泄露受害者总数为4,837人。 2. 2024年与2023年相比,受勒索软件攻击的行业中,制造业、专业服务和建筑业的受害者数量增长显著。 3. 2025年1月至4月,勒索软件泄露受害者中,有38人来自法律行业,49人来自教育行业。 4. 勒索软件攻击者中,拥有500多名受害者的大型团伙占少数,但贡献了大部分受害者。 5. 了解勒索软件受害者学可以帮助优先考虑防御措施,并提高对过去攻击威胁的应对能力。
"2025年网络犯罪的演变?" "如何提高对勒索软件的防御?" "哪些行业正面临最大的威胁?"
客服
商务合作
小程序
服务号
折叠