Home InternationalRansomware Victim Numbers Rise, Despite Drop in Ac...
International⭐ Featured

Ransomware Victim Numbers Rise, Despite Drop in Active Extortion Groups

Ransomware victims surged in Q4 2025 despite fewer active extortion groups, with data leaks rising 50%, ReliaQuest researchers report

7 April 2026 at 08:33 am
1 views
Ransomware Victim Numbers Rise, Despite Drop in Active Extortion Groups

In the fourth quarter of 2025, the number of ransomware victims has seen a significant surge, despite a decline in the number of active extortion groups, according to a report by ReliaQuest researchers. This unexpected increase in ransomware incidents highlights the evolving tactics of cybercriminals and the challenges faced by organizations in safeguarding their data.

The report reveals that while the number of active ransomware groups has decreased, the impact of these groups has intensified. This could be due to several factors, including the increased sophistication of ransomware, the expansion of their targeting strategies, and the growing reliance of organizations on digital infrastructure. The rise in ransomware attacks underscores the need for enhanced cybersecurity measures and proactive threat intelligence initiatives.

One of the most concerning trends highlighted in the report is the 50% increase in data leaks associated with ransomware incidents. This rise suggests that cybercriminals are not only encrypting data to demand ransoms but are also exploiting data leaks as a secondary revenue stream. Such leaks can lead to significant reputational damage and financial losses for victims, further incentivizing cybercriminals to adopt this strategy.

The decline in active extortion groups could be attributed to several factors, including improved law enforcement efforts, increased collaboration between cybersecurity firms and governments, and the emergence of more sophisticated detection and response mechanisms. However, the persistence of ransomware attacks indicates that cybercriminals are adapting their tactics to overcome these challenges.

Organizations are increasingly recognizing the importance of robust cybersecurity frameworks to mitigate ransomware risks. This includes investing in advanced threat detection systems, employee training programs, and regular vulnerability assessments. Additionally, the adoption of data backup and recovery solutions has become crucial to ensure business continuity in the event of a ransomware attack.

The surge in ransomware victims also highlights the need for a coordinated global response to combat this growing threat. International cooperation is essential to share intelligence, develop standardized defense strategies, and hold cybercriminals accountable. Governments and cybersecurity communities must work together to address the root causes of ransomware proliferation and support victims in recovering from these attacks.

In conclusion, the unexpected rise in ransomware victims despite fewer active extortion groups serves as a stark reminder of the ongoing challenges in the cybersecurity landscape. The increasing reliance on digital systems and the evolving tactics of cybercriminals necessitate a proactive and comprehensive approach to safeguarding data and combating ransomware threats. As the stakes continue to escalate, it is imperative for organizations, governments, and cybersecurity experts to collaborate and innovate to protect against these sophisticated attacks.

📰 Related News
Ollama 0.2.6 Released with Native Gemma 4 Support and Enhanced Performance
Ollama 0.2.6 Released with Native Gemma 4 Support and Enhanced Performance
Ollama 0.2.6 is now live, featuring native support for Google's Gemma 4 models and improved local inference performance for Windows, macOS, and Linux.
14 Apr
Weekly news roundup: Shortages spread to MLCCs; SK Hynix reportedly in talks with Microsoft and Google
Weekly news roundup: Shortages spread to MLCCs; SK Hynix reportedly in talks with Microsoft and Google
Below are the most-read DIGITIMES Asia stories from the week of April 6-April 13, 2026:
14 Apr
cutile-stencil 0.2.0
cutile-stencil 0.2.0
An xDSL-based stencil compiler that generates optimized GPU kernels via NVIDIA cuTile
14 Apr
merlin-llm added to PyPI
merlin-llm added to PyPI
Merlin — a fast local LLM for agentic coding on Apple Silicon
14 Apr
Fluent Cut - Craft and compose videos programmatically in PHP with an elegant fluent API
Fluent Cut - Craft and compose videos programmatically in PHP with an elegant fluent API
Craft and compose videos programmatically in PHP with an elegant fluent API - b7s/fluentcut
14 Apr
Crypto Investor at Center of Trump Corruption Allegations Now Sees Himself as ‘Victim’
Crypto Investor at Center of Trump Corruption Allegations Now Sees Himself as ‘Victim’
Justin Sun has accused Trump-affiliated World Liberty Financial of misconduct and a general lack of transparency.
14 Apr
nvidia-nat-weave 1.7.0a20260413
nvidia-nat-weave 1.7.0a20260413
Subpackage for Weave integration in NeMo Agent Toolkit
14 Apr
nvidia-nat-s3 1.7.0a20260413
nvidia-nat-s3 1.7.0a20260413
Subpackage for S3-compatible integration in NeMo Agent Toolkit
14 Apr
Social Security Trust Fund to Run Dry in 2032: Just 6 Years From Now
Social Security Trust Fund to Run Dry in 2032: Just 6 Years From Now
Six years. That is how much time separates retirees from a Social Security system that, by its own projections, runs out of money. If you are 56 years old...
14 Apr
cane-gpu-perf added to PyPI
cane-gpu-perf added to PyPI
GPU inference benchmarking with opinionated diagnostics
13 Apr