<a href="https://www.clickcease.com" rel="nofollow"><img src="https://monitor.clickcease.com" alt="ClickCease">
Frame 1000003827
new F&S

Q2 2025 Ransomware Report

How Ransomware Tactics Evolved This Quarter 

Check Point Research’s Q2 2025 Ransomware Report shows how attackers are mixing AI with classic extortion tactics. Based on leak site data and threat intel, it breaks down how ransomware is changing – and what defenders need to do about it. 

Highlights from this quarter’s findings: 

- AI-Powered Negotiation Tactics: Threat actors are now using AI to automate communications and sharpen social engineering. 
-  Data-Only Extortion: Encryption takes a back seat as exfiltration becomes the weapon of choice 
- Ecosystem Disruption: Major ransomware-as-a-service (RaaS) players like LockBit and RansomHub go dark, shaking up the power structure. 
- New Pressure Tactics: Our Supply Chain Intelligence module continuously monitors your vendors and suppliers for relevant cyber risks and incidents.

Download Now

By the Numbers: Q2 2025 Snapshot

Screenshot_2025-07-29_210856-removebg-preview
1,607 Organizations publicly listed on ransomware leak sites in Q2 2025
Screenshot_2025-07-29_210741-removebg-preview
9.8% Ransomware attacks that targeted the manufacturing sector
Screenshot_2025-07-29_211124-removebg-preview
#1 Qilin ranked as the most active group, doubling its attack volume.

Customers

liveintent
BPI
Chipotle
Farferch
homepoit
ICL
Leumi
mynt
Playtika
Shipmate
Stroer
worlremit
screenshot
Black-Coffee
Flatex
Happiest-Minds
Menora
Ripe
Sin-Post
GFL-NEw
mynt-2-2
mynt-2-3
mynt-1-2-1
BDO-250x250-1
Comeon-250x250-1
Gett-2
Website-Format-58