SafePay, DevMan Emerge as Major Ransomware Threats

SafePay, DevMan Emerge as Major Ransomware Threats

SafePay has rapidly risen to become the top ransomware group in May 2025 by claiming 58 victims, mainly targeting U.S. sectors such as Professional Services and Healthcare. The leak of VanHelsing Ransomware source code and the emergence of new ransomware groups highlight ongoing threats and the need for robust cybersecurity measures. #SafePay #VanHelsing #RansomwareLeaks

Keypoints

  • SafePay overtook Qilin to become the leading ransomware group in May 2025 with 58 victims.
  • SafePay primarily gains access through VPN and RDP, using stolen credentials and password spraying.
  • The leak of VanHelsing RaaS source code raises concerns about the emergence of new ransomware variants.
  • DevMan is an emerging threat, deploying its own ransomware via Group Policy Object (GPO).
  • Cybersecurity best practices, including network segmentation and zero-trust, are essential for protection against ransomware attacks.

Read More: https://thecyberexpress.com/safepay-devman-emerging-ransomware-threats/