
CrazyHunter Ransomware
CrazyHunter is a ransomware campaign targeting healthcare that weakens endpoint defenses and escalates privileges before encrypting systems at scale.

That wraps up a phenomenally successful RSA Conference in San Francisco for Intel 471. The team built on our exciting acquisition of Cyborg Security and shared with customers how we’re supercharging threat hunting with the unrivaled breadth, depth, speed, and relevance of Intel 471’s cyber threat intelligence (CTI).
We also released the 471 Cyber Threat Report 2024, our comprehensive analysis of emerging threat trends and the evolving techniques, motivations, and tools employed by threat actors from January 2023 to March 2024.
Defenders are under more pressure than ever to navigate threats from prolific and persistent adversaries looking to disrupt, deny, and degrade the digital world for their gain at your expense. The report reflects our commitment to exposing your adversaries and serves as a beacon for defenders to proactively navigate a rapidly changing threat environment and secure the digital world.
As the first CTI vendor to market with a threat hunting platform integrated with premier CTI, Intel 471 had a compelling innovation story to tell the hundreds of delegates who visited our booth at RSA.
Attendees and analysts were keen to learn more about how Intel 471 is approaching the convergence of CTI and threat hunting as more customers adopt complementary use cases and integrate both groups within the same teams and budgets.
Key takeaways from RSA Conference 2024:
We shared with key industry media and analysts how we’re driving innovation in the industry by helping customers operationalize threat intelligence with the TITAN platform’s data parsing and contextualization. We also shared how we’re setting a new standard in intelligence-led threat hunting to help customers achieve more accurate threat hunts, proper measures for operational success, and a return on investment for their threat hunt programs.
Anna Delaney, director of productions at Information Security Media Group (ISMG), interviewed Intel 471 co-founder and CEO Jason Passwaters about the convergence of threat intelligence and threat hunting. Jason also explained how Intel 471’s real-time threat intelligence reporting and TITAN’s data contextualization address third-party risk.
James Maguire, eWeek’s editor-in-chief, interviewed Intel 471’s CSO Brandon Hoffman about operationalizing threat intelligence.
Monika Soltysik, IDC senior research analyst, met with CIO Michael DeBolt and Hoffman to more fully understand the impact that Cyborg Security threat hunting brings to our existing CTI solution portfolio.
If you didn’t make it to the Intel 471 booth at RSA, please do visit us at Infosecurity Europe in London on June 4-6, or Black Hat USA Las Vegas on August 3-8. Or visit intel471.com to learn how our threat intelligence covering the entire digital domain can help your teams proactively defend your organization.

CrazyHunter is a ransomware campaign targeting healthcare that weakens endpoint defenses and escalates privileges before encrypting systems at scale.

DevMan Ransomware is a newly emerging ransomware operation observed in 2025 that has been assessed as a derivative of the DragonForce ransomware family.

Gootloader resurfaced with enhanced capabilities, building on the multi-stage loader malware first seen in 2020.
Stay informed with our weekly executive update, sending you the latest news and timely data on the threats, risks, and regulations affecting your organization.