Endpoint Security Ransomware News

The latest endpoint security ransomware stories, summarized by AI

Emerging Ransomware Threats Targeting U.S. and South Korean Organizations.
endpoint-security-ransomware2.62 min read

Emerging Ransomware Threats Targeting U.S. and South Korean Organizations.

3 years agoSource: The Hacker News
View original source
CACTUS Ransomware Evades Antivirus and Exploits VPN Flaws to Infiltrate Networks
endpoint-security-ransomware
2.77 min3 years ago

CACTUS Ransomware Evades Antivirus and Exploits VPN Flaws to Infiltrate Networks

Cybersecurity researchers have discovered a new ransomware strain called CACTUS that exploits known flaws in VPN appliances to infiltrate targeted networks. The ransomware has been observed targeting large commercial entities since March 2023, using double extortion tactics to steal sensitive data prior to encryption. CACTUS actors attempt to enumerate local and network user accounts before creating new user accounts and deploying the ransomware encryptor via scheduled tasks. The ransomware also utilizes Cobalt Strike and a tunneling tool referred to as Chisel for command-and-control, alongside remote monitoring and management (RMM) software like AnyDesk to push files to the infected hosts.

More Endpoint Security Ransomware Stories

No articles found.