Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Ransomware Surges in July After Q2 Lull

August 7, 2026

Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

August 7, 2026

Addressing Vulnerability Management Together in the Age of AI

August 7, 2026
Facebook X (Twitter) Instagram
Friday, August 7
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Ransomware Surges in July After Q2 Lull
News

Ransomware Surges in July After Q2 Lull

Team-CWDBy Team-CWDAugust 7, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Ransomware attacks surged by 19% in July compared to June, with finance, tech and healthcare industries heavily impacted, new analysis by Comparitech has found.

The consumer service firm observed a total of 799 claimed ransomware attacks in July, making it the second highest month of 2026 following a relative lull in April, May and June.

The number recorded in July 2026 is also the third highest month for ransomware attacks in the past 17 months, according to Comparitech.

The sector that experienced the biggest month-by-month increase in attacks was finance at 71%, followed by technology (62%), healthcare (46%) and education (44%).

July also saw a jump in attacks targeting US-based organizations, up by 31% from June.

Several major confirmed incidents were highlighted in Comparitech’s July analysis due to their impacts. This included an attack on US healthcare provider AnMad, resulting in the closure of facilities.

Another was an incident affecting the Romanian government’s land registry agency, which resulted in an entire database being wiped and significant disruption to the country’s real estate market.

Rebecca Moody, head of data research at Comparitech, commented: “These attacks highlight how ransomware groups hit organizations in various different ways – taking down key systems, stealing troves of data, and even deleting massive datasets. Never has it been more important for organisations to ensure they’re carrying out regular backups (and backups of their backups!) so they can reset systems and restore data as quickly as possible if the worst does happen.”

The Gentlemen and Qilin Continue to Dominate

Comparitech’s analysis, published on August 5, found that The Gentlemen and Qilin groups together accounted for 33% of all attacks in July, the former claiming 135 attacks and the latter 125.

These figures show a continuation of a “battle” for supremacy between these two ransomware strains.

An analysis by ReliaQuest found that The Gentlemen group emerged as the most prolific threat actor behind cyber extortion campaigns between March and May 2026, usurping the previously dominant Qilin outfit.

These two groups were significantly more active than other ransomware actors in July. The next most active group was DragonForce, making up 41 attacks, followed by INC (36), CRPx0 (33) and SafePay (30).

Read now: A New Ransomware Threat Actor Emerges Every Week, Warns Report



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleRogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks
Team-CWD
  • Website

Related Posts

News

Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

August 7, 2026
News

Healthcare and Victim Support Charities Affected by Beacon Cyber Incid

August 7, 2026
News

Where AI Platforms like Claude Actually Fit

August 7, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA

July 11, 20268 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

Here’s how to avoid a ‘second strike’

April 11, 2026

The WhatsApp screen-sharing scam you didn’t see coming

November 6, 2025

How chatbots can help spread scams

October 14, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.