• Skip to main content
  • Skip to primary sidebar
  • Skip to footer
Menu
  • Home
  • About Us
  • Solutions & Services
    • Security Governance
    • Network Security 
    • Cloud Security 
  • Compliance
  • Sectors
  • Blog
  • Contact

Russia-linked gangs attack US critical infrastructure most often

By kamran | At April 1, 2022

Apr 01 2022

Russia-linked gangs attack US critical infrastructure most often

ransomware

The FBI has identified the top three ransomware strains responsible for most attacks against vital infrastructure in the United States.

According to the FBI’s newest Internet Crime Report, the most active ransomware strains in 2021 were Conti, Lockbit, and REvil/Sodinokibi.

Conti targeted 87 critical infrastructure companies, according to the Internet Crime Complaint Center (IC3), while Lockbit and REvil/Sodinokibi targeted 58 and 51 victims, respectively.

The three share a common bond: Russia. After the Kremlin invaded Ukraine last month, Conti sided with Moscow. Internal emails have been leaked, indicating that the organization supported Russia’s secret services in surveillance attempts.

Meanwhile, REvil’s associates in Russia lived an opulent lifestyle before being apprehended by Russian authorities.

LockBit has avoided taking sides with any country. According to OSINT investigations, at least some of its members are Russian, and they regurgitate storylines that are quite similar to Moscow’s.

According to security specialists, as much as $400 million in cryptocurrency recently ended up in the hands of cybercriminals linked to Russia.

Various objectives

According to the FBI, threat actors target vital infrastructure sectors with the top three ransomware variants. Conti prioritizes the industries of Critical Manufacturing, Commercial Facilities, and Food and Agriculture, for example.

LockBit primarily targets the government, healthcare and public health, and financial services industries.

The Financial Services, Information Technology, Healthcare, and Public Health industries were the most commonly targeted by REvil/Sodinokibi.

Healthcare services were the most targeted by threat actors in 2021, with 148 victims reporting assaults to the IC3. Financial Services (89) and Information Technology (74) came in second and third, respectively.

Exponential growth rate

In 2021, IC3 received 3,729 ransomware-related complaints, according to the report. The number of ransomware reports grew by 50% in comparison to the previous year.

When comparing the number of complaints from 2018 to 2019, the rate of rise is even faster, with 82 percent more recorded ransomware complaints.

According to the research, victims’ losses increased at a dizzying pace. According to the FBI, ransomware victims lost more than $42 million in 2021.

In 2020 and 2019, reported losses were roughly $29 million and $9 million, respectively.

The number of losses, however, does not include estimates of lost business, time, wages, data, equipment, or any third-party remediation services bought by a victim, according to the report’s authors.

According to the research, “in certain situations, victims do not disclose any loss amount to the FBI, resulting in an artificially low total ransomware loss rate.”

A cyber-epidemic

Ransomware is still a huge danger to businesses all around the world. According to a recent Thales analysis, one out of every five worldwide enterprises was hit by ransaomware last year.

According to data collected from over 2,700 IT decision-makers worldwide, 22% of companies have paid or would pay a ransom for their data.

The findings are in stark contrast with the FBI’s recommendations. The FBI warns against paying the ransom because successful extortion attempts encourage threat actors to keep operating.

Even though ransomware is the primary cause of security assaults, 41% of respondents indicated their firm has no plans to modify security investment, despite the increased ransomware consequences.

Every year, ransomware statistics set new anti-records, but in 2022, fresh threats may be added to the mix.

New threats emerged as a result of Russia’s invasion of Ukraine. According to some analysts, Moscow may resort to cybercriminals to help maintain its economy, making ransomware assaults even more deadly.

Officials from the United States have warned key infrastructure corporations, claiming that ‘developing intelligence’ implies Russia intends to utilize its cyber capabilities against the United States.

Written by kamran · Categorized: Cyber security news, Cyber security threats

Primary Sidebar

Recents post

Your Law Firm Could Be Next — Are You Protected?

Cybercriminals are targeting … [Read More...] about Your Law Firm Could Be Next — Are You Protected?

Litigation, Logins, Breach Response & More: A Lawyer’s Cyber Survival Guide

Your clients trust you with … [Read More...] about Litigation, Logins, Breach Response & More: A Lawyer’s Cyber Survival Guide

Massive Surge in Healthcare Cyber Attacks…Ransomware, Radiology Data Breach, and More

The first half of 2025 has … [Read More...] about Massive Surge in Healthcare Cyber Attacks…Ransomware, Radiology Data Breach, and More

Categories

  • AI and cybersecurity (2)
  • blockchain (1)
  • Cloud security (29)
  • Compliance (25)
  • Cyber security news (108)
  • Cyber security threats (376)
  • Cyber security tips (370)
  • Data Security (3)
  • E-Commerce cyber security (3)
  • Education cyber security (1)
  • Enterprise cyber security (7)
  • Financial organizations cyber security (4)
  • General (22)
  • Government cyber security (4)
  • Healthcare cyber security (19)
  • Information Security (2)
  • Law Firms Cyber Security (9)
  • Network security (9)
  • Newsletter (1)
  • Privacy (1)
  • Ransomware (14)
  • remote work (1)
  • Risk assessment and management (6)
  • Security management and governance (9)
  • SME Cybersecurity (2)
  • Software Security (2)
  • Supply Chain Attacks (5)
  • System security (3)
  • Uncategorized (35)
  • Vendor security (14)

Archives

Footer

Infoguard Cyber Security

San Jose Office
333 W. Santa Clara Street
Suite 920
San Jose, CA 95113
Ph: (855) 444-6004

Irvine Office
19800 MacArthur Blvd.
Suite 300
Irvine, CA 92612

Recent Posts

  • Your Law Firm Could Be Next — Are You Protected?
  • Litigation, Logins, Breach Response & More: A Lawyer’s Cyber Survival Guide
  • Massive Surge in Healthcare Cyber Attacks…Ransomware, Radiology Data Breach, and More

Get Social

  • LinkedIn
© 2026 INFOGUARD. All Rights Reserved.
Linkedin-in
Menu
  • Home
  • About Us
  • Blog
  • Compliance Services
  • Contact
  • Sectors
Menu
  • Home
  • About Us
  • Blog
  • Compliance Services
  • Contact
  • Sectors
  • Privacy Policy
  • Terms of Use
  • Acceptable Use