THE SuspectFile article discusses an interview with the creators of RansomNews.online about their RedACT H1 2026 report, which analyzes ransomware activity targeting Italy. The report emphasizes continuous monitoring of ransomware through open-source intelligence and aims to provide a comprehensive picture of ransomware threats rather than just rankings or victim lists.
Key findings include that LockBit5, Qilin, and The Gentlemen were the most active ransomware groups in Italy during H1 2026, accounting for 54 out of 148 reported incidents. The article notes the importance of quality and reliable data collection, which is conducted manually without AI, highlighting that only one ransomware attack in healthcare was reported during this period, by LockBit5.