Hive Ransomware first appeared in June 2021. Hive Ransomware relies on a diverse set of tactics, techniques, and procedures (TTP) which make it difficult for any organization to defend against its attacks.


In view of ProxyShell attacks, Microsoft has recently released an update advising customers to update patches on Exchange servers to prevent such attacks.


LockFile ransomware targets organizations using Microsoft Exchange ProxyShell vulnerabilities and Windows PetitPotam NTLM Relay vulnerability.