New: Cymulate Cowork for Agentic Cyber Defense Engineering
Learn More
New Bitsight Integration: Turn Threat Intelligence into Validated Security
Learn More
Introducing Cymulate Vero AI for Agentic Cyber Defense Engineering
Learn More
New Case Study: How a Financial Authority Validates Cyber Resilience
Learn More

CISA Alert (AA22-321A) - Hive Ransomware Analysis

November 20, 2022

Threat actors are using Hive ransomware variants to target the government, communication, critical manufacturing, information technology, and healthcare sectors. Initial access is carried out with phishing emails or by exploiting flaws in Internet facing applications. The adversaries exfiltrate sensitive information prior to encrypting files and threatens to release the stolen data if the ransom is not paid.