Ransomware Group

Hive

Also known as: Hive Ransomware

Status: disrupted • First seen 2021-061,500+ known victims

Hive attacked hospitals and schools until FBI shut them down. They stole $100M+ before being stopped.

Overview

Hive was a prolific RaaS operation disrupted by FBI in January 2023. They targeted healthcare heavily.

Target Industries

Healthcare, Education, IT

How They Attack

  • Phishing
  • RDP exploitation
  • ProxyShell exploitation

Notable Victims

Memorial Health System, Lake Charles Memorial Hospital

Is your business exposed?

How to Protect Against Hive

  1. 1.

    Review for IOCs from FBI advisory

MITRE ATT&CK Techniques

T1566, T1486, T1021

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required