Archive

BianLian GOs for PowerShell After TeamCity Exploitation

March 8, 2024 Contributors: Justin Timothy, Threat Intelligence Consultant, Gabe Renfro, DFIR Advisory Consultant, Keven Murphy, DFIR Principal Consultant Introduction Ever since Avast released a decr…

GRIT Ransomware Report: January 2024

February 15, 2024 Additional contributors to this report: Nic Finn, Grayson North, Jason Baker January saw a decrease in ransomware activity relative to the operations tempo observed throughout Q4 202…

Annual GRIT Ransomware Report – 2023

January 25, 2024 With the conclusion of 2023, the GuidePoint Research and Intelligence Team (GRIT) has compiled our second annual report on ransomware activity over the last year.

GRIT Ransomware Report: November 2023

December 14, 2023 Additional contributors to this report: Nic Finn, Grayson North, Justin Timothy, Ryan Silver November 2023 closed with an increase in posted ransomware victims relative to a quieter …

GRIT Ransomware Report: October 2023

November 16, 2023 Additional contributors to this report: Nic Finn, Justin Timothy October proved to be much quieter than expected.

GRIT Ransomware Report: August 2023

September 14, 2023 Additional contributors to this report: Jason Baker, Ryan Silver August’s trends in ransomware highlight that as much as the ransomware environment changes, it also stays the …

The Value of Engaging a Threat Actor: Leveraging Strategic Communications for Ransomware Response

August 22, 2023 Additional contribution to this blog from Jason Baker, Threat Intelligence Consultant If you’ve found this blog because you’re currently experiencing a ransomware incident, reach o…

GRIT Ransomware Report: July 2023

August 17, 2023 Additional contributors to this report: Jason Baker, Grayson North, Justin Timothy July revealed several interesting changes in trends, with an observed increase in number of active th…

Tunnel Vision: CloudflareD AbuseD in the WilD

August 3, 2023 Introduction Across the cybersecurity community, defenders are constantly finding threat actors using novel and innovative techniques to further their exploitation efforts against targe…

Quarterly GRIT Ransomware Report – Q2 2023

July 20, 2023 With the second quarter of 2023 behind us, it’s time to talk about GRIT’s findings from April, May, and June.

GRIT Ransomware Report: May 2023

June 15, 2023 Additional contributors to this report: Jason Baker, Nic Finn During the month of May, GRIT observed an increase in the number of ransomware victims compared to April 2023.

GRIT Ransomware Report: April 2023

May 11, 2023 Additional contributors to this GRIT report: Grayson North, Nic Finn, and Drew Schmitt Following a relatively active March–resulting in 451 affected organizations observed across 24 ran…