Skip to content
Thursday, Aug 11, 2022
Insolvency Insolvency

Baldwin And Co

August 10, 2022

Get Outcomes With An Promoting Finances That Works For You

August 9, 2022

Oscar Well being Monetary Efficiency And Enrollment 2014

August 6, 2022

Oscar Health Monetary Performance And Enrollment 2014

Primary Menu
  • Personal Account
  • Cpa Vs Accountant
  • Tax Accountants
  • Accountants Expertise
  • Personal Finances
  • Business Account
  • About Us
    • Advertise Here
    • Contact Us
    • Privacy Policy
    • Sitemap
  • Home
  • The Week in Ransomware – May 6th 2022
Personal Account

The Week in Ransomware – May 6th 2022

May 7, 2022
Insolvency Insolvency
Read Time : 6 Minutes

Table of Contents

  • April 30th 2022
    • Fake Windows 10 updates infect you with Magniber ransomware
  • May 1st 2022
    • REvil ransomware returns: New malware sample confirms gang is back
  • May 2nd 2022
    • New STOP Ransomware variants
  • May 3rd 2022
    • New ransomware strains linked to North Korean govt hackers
    • Conti, REvil, LockBit ransomware bugs exploited to block encryption
  • May 4th 2022
    • New Teslarvng ransomware variant
  • May 5th 2022
    • New Xorist ransomware variant
    • New STOP Ransomware variants
    • New ‘Gucci’ Phobos ransomware variant
    • The Conti ransomware’s brand is sHeading 2hutting down
    • Cybercrime loves company: Conti cooperated with other ransomware gangs
    • BlackFog’s The State of Ransomware in 2022 report
  • May 6th 2022
    • US agricultural machinery maker AGCO hit by ransomware attack
    • Ransomware: LockBit 3.0 begins to be used in cyberattacks
    • New Odaku Ransomware
    • That’s it for this week! Hope everyone has a nice weekend!

[ad_1]

Padlock

Ransomware operations continue to evolve, with new groups appearing and others quietly shutting down their operations or rebranding as new groups.

Related Posts:

  • New malware sample confirms gang is back

This was seen this week, with Advanced Intel CEO Vitali Kremez disclosing yesterday that the Conti brand, not the organization itself, was shutting down. However, this does not mean that the threat actors themselves are retiring.

This week, we also received confirmation that REvil, or at least some of its members, have relaunched the operation after a sample of their encryptor was found.

In research-related news, a security researcher discovered DLL hijacking vulnerabilities in ransomware operations and releasing DLLs that can be used to terminate the encryptors before they begin encrypting files.

This week, other research released is from Trellix, who reported that various ransomware operations are linked to North Korean government hacking groups, including the notorious Lazarus gang.

Attacks we saw this week include using fake Windows 10 updates to distribute Magniber ransomware and an attack on AGCO, a US agricultural machinery maker.

Contributors and those who provided new ransomware information and stories this week include: @malwrhunterteam, @Seifreed, @DanielGallagher, @LawrenceAbrams, @malwareforme, @jorntvdw, @BleepinComputer, @demonslay335, @PolarToffee, @fwosar, @billtoulas, @FourOctets, @struppigel, @VK_Intel, @serghei, @Ionut_Ilascu, @Trellix, @malvuln, @JakubKroustek, @R3MRUM, @malvuln, @pcrisk, @Amigo_A_, @Intel471Inc, @ValeryMarchive, and @blackfogprivacy.

April 30th 2022

Fake Windows 10 updates infect you with Magniber ransomware

Fake Windows 10 updates are being used to distribute the Magniber ransomware in a massive campaign that started earlier this month.

May 1st 2022

REvil ransomware returns: New malware sample confirms gang is back

The notorious REvil ransomware operation has returned amidst rising tensions between Russia and the USA, with new infrastructure and a modified encryptor allowing for more targeted attacks.

May 2nd 2022

New STOP Ransomware variants

PCrisk found new STOP ransomware variants that append the .mmob, .hhjk, and the .ttii extension.

May 3rd 2022

New ransomware strains linked to North Korean govt hackers

Several ransomware strains have been linked to APT38, a North Korean-sponsored hacking group known for its focus on targeting and stealing funds from financial institutions worldwide.

Conti, REvil, LockBit ransomware bugs exploited to block encryption

Analyzing malware strains from these ransomware gangs, a security researcher named hyp3rlinx found that the samples were vulnerable to DLL hijacking, a method usually leveraged by attackers to inject malicious code into a legitimate application.

May 4th 2022

New Teslarvng ransomware variant

PCrisk found new variant of the Teslarvng Ransomware that appends the .selena extension and drops a ransom note named selena.txt.

May 5th 2022

New Xorist ransomware variant

PCrisk found a new Xorist ransomware variant that appends the .Mal extension.

New STOP Ransomware variants

PCrisk found new STOP ransomware variants that append the .mine, .xcvf, .bbnm, .sijr, and the .egfge xtensions.

New ‘Gucci’ Phobos ransomware variant

PCrisk found new Phobos ransomware variant that appends the .GUCCI extension.

The Conti ransomware’s brand is sHeading 2hutting down

Conti ransomware as in its original reincarnation name is officially dead for a while. Bye-bye.

— Vitali Kremez (@VK_Intel) May 4, 2022

Cybercrime loves company: Conti cooperated with other ransomware gangs

Ransomware gangs are apparently no different. Thanks to the Conti Leaks, Intel 471 researchers found evidence that the Conti ransomware group kept a close eye on other ransomware groups and borrowed some of their techniques and best practices for its own operations. Additionally, Intel 471 also observed the Conti group’s affiliates and managers cooperating with other gangs, which included the LockBit, Maze and Ryuk teams.

BlackFog’s The State of Ransomware in 2022 report

In 2020, 2021 and now 2022, BlackFog’s state of ransomware in 2022 measures publicly disclosed attacks globally. We also produced an annual summary of our findings in the 2021 ransomware attack report. In 2022 we will be tracking even more statistics, such as data exfiltration and several others as the year progresses. As usual you can also subscribe to have the report delivered to your inbox every month.

May 6th 2022

US agricultural machinery maker AGCO hit by ransomware attack

AGCO, a leading US-based agricultural machinery producer, has announced it was hit by a ransomware attack impacting some of its production facilities.

Ransomware: LockBit 3.0 begins to be used in cyberattacks

This new version had been mentioned in mid-March. In particular, it must fix an encryption bug in MSSQL databases. Its use in cyberattacks has begun.

New Odaku Ransomware

PCrisk found a new Chaos ransomware variant that calls itself Odaku ransomware.

That’s it for this week! Hope everyone has a nice weekend!



[ad_2]

Source link

Tagged in : American Express Business Cards Att Business Customer Service Att Business Internet Att Business Login Bad Business Codes Bank Of America Small Business Buffalo Business First Business Administration Jobs Business Administration Salary Business Analyst Jobs Business Card Dimensions Business Casual Female Business Casual For Women Business Casual Women Outfits Business Ideas 2021 Business Letter Example Business License California Business Name Search Business Process Reengineering Business Proposal Template Buy A Business Card For Business Chase For Business Chase Ink Business Card Columbia Business School Costco Business Center San Jose Emirates Business Class Facebook Business Account Fictitious Business Name Florida Business Entity Search Ga Sos Business Search Georgia Business Search Google Business Email Houston Business Journal Illinois Business Search Instagram Business Account Is Lularoe Still In Business London Business School Master Of Business Administration Men'S Business Casual Pittsburgh Business Times Qualified Business Income Deduction Sacramento Business Journal Secured Business Credit Card Standard Business Card Size T Mobile Business Texas Business Search Tië³´o The Business Top Business Schools In Us Types Of Business

Related Articles

July 26, 2022

Get Windows 11 For All-Time Low Price Of $12, Office 365 For Only $5, And So Much More

May 14, 2022

An enterprise architecture approach to ESG

May 31, 2022

N80Bn Fraud: Suspended Accountant General of the Federation Replaced As Buhari Makes New Appointment

Post navigation

Previous Previous post: Joe Biden to likely avoid IRS audit that could have revealed Hunter income
Next Next post: Horoscope signs guide: How astrology might affect your personal finances, Money News

Recent Posts

  • Get Outcomes With An Promoting Finances That Works For You
  • Oscar Well being Monetary Efficiency And Enrollment 2014
  • Oscar Health Monetary Performance And Enrollment 2014
  • Galaxy Z Fold 4 price leaks from France, teasing a similar cost as Fold 3
  • Your Complete Guide to Bookkeeping for Your Business

Archives

  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • November 2018
  • October 2018
  • January 2017

Categories

  • Accountants Expertise
  • Business Account
  • Cpa Vs Accountant
  • Personal Account
  • Personal Finances
  • Tax Accountants

Visit Now

custom business cards
Intellifluence Trusted Blogger

BL

TL

buy high da pbn backlinks 

insolvencyebaldwinandco.co.uk All rights reserved Theme: News Base by Themematic
Saturday May 7, 2022
We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT