Auto Parts Manufacturer Attacked by Three Different Ransomware in Two weeks

Sophos experts told about an interesting case when an unnamed auto parts manufacturer was attacked by three different ransomware in a row, in just two weeks. Let me remind you that we also wrote that New RedAlert Ransomware Targets Windows and Linux VMware ESXi Servers, and also that Hackers Launched LockBit 3.0 and Bug Bounty… Continue reading Auto Parts Manufacturer Attacked by Three Different Ransomware in Two weeks

BlackCat Says It Attacked Creos Luxembourg, European Gas Pipeline Operator

The operators of the BlackCat ransomware (aka ALPHV) claimed responsibility for hacking Creos Luxembourg, which operates a gas pipeline and electricity grid in central Europe. Encevo, which owns Creos Luxembourg and is an energy supplier to five EU countries, announced last week that it was hacked between July 22 and 23. As a result of… Continue reading BlackCat Says It Attacked Creos Luxembourg, European Gas Pipeline Operator

Djvu Ransomware Spreads via Discord, Carrying RedLine Stealer

STOP DJVU Ransomware

An infamous STOP/Djvu ransomware adopted a new spreading tactic. According to the report of Avast Threat Labs, a malware intelligence group, ransomware distributors opted for Discord as a place to spread their malware. STOP/Djvu spreads in Discord, features RedStealer According to the latest notifications, STOP/Djvu ransomware is getting spread through the malicious spam messages in… Continue reading Djvu Ransomware Spreads via Discord, Carrying RedLine Stealer

Experts Find Similarities Between LockBit and BlackMatter

Cybersecurity researchers have confirmed similarities between the latest iteration of LockBit ransomware and BlackMatter. A new version of LockBit 3.0 (LockBit Black) was released in June 2022, along with a new leak site and the first Bug Bounty program on the dark web. You may also be interested in reading: Conti vs. LockBit 2.0 –… Continue reading Experts Find Similarities Between LockBit and BlackMatter

U2K Ransomware Strikes, Thousands Of Victims

U2K ransomware, probably the rising star on the ransomware arena, appeared on July 10, 2022. It instantly infected a huge number of users and keeps spreading, despite the massive alarms in cyberspace. U2K ransomware (U2K files encrypted) – what happened? Numerous analysts report the analysts about the new ransomware variant stomping the users’ devices. It… Continue reading U2K Ransomware Strikes, Thousands Of Victims

Emsisoft Released a Free Tool to Decrypt Data Corrupted by AstraLocker and Yashma

Emsisoft has released a free decryption tool for files affected by AstraLocker and Yashma ransomware attacks. Let me remind you that last week AstraLocker operators announced that the malware was ending its work and uploaded tools to VirusTotal to decrypt files affected by AstraLocker and Yashma attacks. The hackers said that they do not plan… Continue reading Emsisoft Released a Free Tool to Decrypt Data Corrupted by AstraLocker and Yashma

Bandai Namco Hacked, ALPHV Group Claims

Bandai Namco, Ransomware, Ransomware attack, BlackCat Ransomware,

On Monday, June 11, 2022, the information about the cyberattack on the video game publisher Bandai Namco appeared. Reportedly, a novice cybercrime group BlackCat/ALPHV ciphered the company’s files and leaked its data, as the report on their Darknet leak page says. Ransomware Attack on Bandai Namco The Japanese game studio was reportedly struck by ALPHV… Continue reading Bandai Namco Hacked, ALPHV Group Claims

Conti’s blockchain plans: an ominous prospect

Conti's blockchain plans: an ominous prospect

Earlier this year, on February 22, Conti’s gang became popular because of published Twitter information from an account called “Conti Leaks”. Thanks to the published information, the cyber security community was able to analyze the activities of the gang and its complicated cases. So we were able to learn that the group’s goal was to… Continue reading Conti’s blockchain plans: an ominous prospect

New RedAlert Ransomware Targets Windows and Linux VMware ESXi Servers

Researchers have discovered a new RedAlert (aka N13V) ransomware that encrypts Windows and Linux VMWare ESXi servers and targets corporate networks. MalwareHunterTeam, an information security expert, was the first to notice the new malware, posting screenshots from the group’s dark web site on Twitter. Let me remind you that we also wrote that Information Security… Continue reading New RedAlert Ransomware Targets Windows and Linux VMware ESXi Servers