Yoroi-Cybaze ZLab cyber security experts: The malware works as an encryptor and a decryptor. It abuses Clearnet-to-Tor proxy services to connect to its C2, hidden behind onion sites.
The cyber security experts are investigating current malware campaigns targeting organisations globally, including in the UK. In some cases, identified also Emotet and Trickbot infections.
MalwareHunterTeam cyber security experts discover a variant of the ransomware that adds IP and Computer Name blacklisting. Probably behind it there is still GRIM SPIDER cybercrime group.
Cyber security experts share free a new decryption tool for the latest version of the ransomware family on NoMoreRansom, the V5.2. The malware should also close at the end of the month.
Bleeping Computer: The ransomware authors, that hit also Italy, announced the end of the operations thanks to huge profits. The malware distribution will be stopped within 20 days.
Malwarebytes cyber security experts: Almost 80% of the cybercrime codes that attacks the sector are trojans. There are also different ones as fileless, ransomware and cryptominers.
Bromium cyber security experts: More than a dozen US-based web servers were used to host families: 5 banking trojan, 2 ransomware and 3 information steeler.
Yoroi-Cybaze conducted a study, downloading files of 3 categories: most of them contain malware. In January there was a double cyber attack with Vidar and GandCrab.
The cyber attack hit especially Israeli websites, as part of #OpJerusalem. It demonstrates the risk for the cyber security of using unsecured third party plug-ins.
ESET cyber security experts: It’s a follow-up of the cybercrime attacks of the last October with the same malware. Also Ukraine, France, Germany, and Japan affected.