lazarusholic

Everyday is lazarus.dayβ

Play Ransomware Analysis, Simulation and Mitigation- CISA Alert AA23-352A

2023-12-19, PicusSecurity
https://www.picussecurity.com/resource/blog/play-ransomware-analysis-simulation-and-mitigation-cisa-alert-aa23-352a
#Play #Ransomware

Contents

The Blue Report 2024
Get a comprehensive analysis of over 136 million cyber attacks and understand the state of threat exposure management.
On December 18, 2023, The Cybersecurity and Infrastructure Security Agency (CISA) released a joint advisory on Play ransomware [1]. Play ransomware group first appeared in June 2022, and the group has compromised nearly 300 organizations worldwide. Play ransomware operators exploit known vulnerabilities and follow recent ransomware trends like double extortion and inhibiting system recovery.
In this blog post, we explained the Tactics, Techniques, and Procedures (TTPs) used by Play ransomware and how organizations can defend themselves against Play ransomware attacks.
Play Ransomware
Play ransomware, also known as PlayCrypt, was first observed in late June 2022. The group targets organizations located in Australia, Latin America, Europe, and the United States. As a financially motivated threat group, victims of Play ransomware are from various industries, such as education, healthcare, insurance, media, technology, and telecommunications.
As an …