News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Ransomware attacks: malicious code with valid certificates
Ransomware attacks: malicious code with valid certificates

Sophos thwarts ransomware attacks with a rare, malicious driver, but signed with a valid Microsoft digital certificate. The driver targets Endpoint Detection and Response (EDR) processes. The attack is linked to the Cuba Ransomware Group. Sophos found malicious code in several drivers signed with legitimate digital certificates. The new report, Signed Driver Malware Moves up the Software Trust Chain, details the investigation that began with an attempted ransomware attack. The attackers used a malicious driver that was bundled with a legitimate Microsoft Windows Hardware Compatibility Publisher digital certificate.

Read more

Evaluations of ransomware groups BlueSky and Cuba
B2B Cyber ​​Security ShortNews

Palo Alto Networks, along with its Unit 42 malware analysis team, presented initial research on new ransomware groups: BlueSky Ransomware and Cuba Ransomware. These are the main goals of the attackers. BlueSky Ransomware is a new ransomware family that uses modern techniques to bypass security defenses. Unit 42 found code fingerprints of ransomware samples that can be linked to the Conti ransomware group. BlueSky is also very similar to Babuk ransomware. BlueSky mainly targets Windows hosts and uses multithreading to encrypt files on the host, thus speeding up encryption. Find the full blog post...

Read more

FBI warns of Cuba ransomware group
B2B Cyber ​​Security ShortNews

49 organizations from five sectors of the critical infrastructure were attacked by the ransomware group Cuba, according to the FBI. The damage is at least $ 43,9 million. At the end of last week, the American FBI issued a warning warning of the machinations of the Cuba ransomware group. Recently, it appears to have been targeting companies in the finance, healthcare, manufacturing, information technology and government organizations that are part of the critical infrastructure in particular. The press release reported 49 known cases in which at least $ 43,9 million in ransom were extorted. As if this sum ...

Read more