Ransomware hackers create ads on Facebook to prompt victims to pay
Campari Wine Corporation recently experienced a ransomware attack, believed to have brought down the company's servers. According to the information, the malicious code was created by a gang of hackers called RagnarLocker and essentially encrypted the company's servers while taking about "2 terabytes" of data.
On November 6, the company issued a statement: "At this stage, we cannot completely rule out that some personal and business data was stolen."
But, although the alcohol company has admitted to the attack, it is clear that it has not paid the ransom. Because hackers recently created Facebook ad campaigns targeting Campari Group employees on Facebook, annoyed them and replaced the prompt: "Pay early."
To post ads, the hacker broke into an account owned by another victim business, Chris Hodson, using his credit card to pay for $ 500 worth of ads. Hodson, a DJ living in Chicago, later told security researcher Brian Krebs that he had set up two-factor authentication but the hacker was still able to crack his Facebook account named Hodson Event Entertainment.
"Hodson said a review of the account showed that this unauthorized campaign reached about 7,150 Facebook users and generated 770 clicks, at a cost per result of 21 cents," said Krebs. "Of course, the group of hackers lost nothing. Hodson said Facebook billed him for $ 35 for the first part of the campaign, but appeared to have discovered fraudulent ads recently, before his account could be charged an additional 159 USD for the campaign ".
In terms of content, the ads come as a press release, claiming that the RagnarLocker hacker group has 2 terabytes of information about the alcohol company and says they should pay or will find their data on the public internet. plus.
Image provided by Chris Hodson of the hacker group's campaign on his account.
"This is ridiculous and looks like a joke," wrote the group of hackers. "But we can confirm that confidential data has been stolen and we are talking about a huge amount of data."
Campari Group has not responded to any request for comment.
Facebook is not the only method this RagnarLocker hacker group uses to reach the victims. Security experts believe the hacking team is also hiring outgoing call center operators in India to make phone calls to remind victims who is responsible for their data.
You should read it
- Vietnamese hackers collect phone numbers of more than 267 million Facebook users?
- Hackers claim to hack Mark Zuckerberg's Facebook on Sunday, will live stream for the whole world to see
- More than 500 million Facebook accounts are for sale on Telegram
- White-haired 'monsters'
- Why is Facebook account hacked?
- America found the notorious hacker 'Fxmsp', who was dubbed the 'Invisible God'
- Virtual social network - new hacker 'gold mine'
- This 23-year-old female hacker is the one who finds secrets that Facebook and other tech giants don't want to reveal
May be interested
- Ransomware: An existing 'undercurrent' threatens businesseshow does the company respond when business data, accounting, or customer contract information is 'captured' by malicious code? that is the situation of many businesses that are victims of ransomware encryption.
- This ransomware strain is specifically aimed at 'dirty' material of companiesransomware strains in general are tending to target data against victims in case they do not accept the required ransom.
- New tool Shifr RaaS allows anyone to create ransomware easilyover the past week, some network security researchers have discovered a new raas that allows anyone to create ransomware just by filling out a form with 3 fields and pressing a button to finish.
- Hackers can use Ransomware to attack and control robotsioactive, an american security consulting firm, recently launched an attack to prove that hackers can not only use ransomware to attack computers to make ransom, but also attack complex robot systems. are being used in many areas.
- Strange ransomware detection only attacks the richother ransomware often spread to all victims if possible, but the new ransomware is different, it selectively infects.
- Warning: Babuk Locker Ransomware is Active Again, Attacking the Worldafter a 3-month hiatus under the name babuk locker, it has returned to creating custom ransomware executables that now target victims around the world.
- New ransomware detection not only encrypts files but also helps 'clean up' the systemrxomware vxcrypter is the first ransomware in the world that not only encrypts the victim's data but also helps clean up their computers by deleting duplicate files on the system.
- Discovered new ransomware on Mac computersaccordingly, this malicious code has the ability to hijack the victim's computer, encrypt all important files and send an extortion message if you want to recover data.
- There is a tool to decrypt the ransomware that specializes in attacking businessesthis new ransomware is still in development.
- Steps to create USB Boot using Command Promptcreating usb boot with command prompt is quite complicated and has many commands to remember compared to how to create usb boot with rufus software. if you want to try to improve the level of creating usb boot with cmd, please follow the instructions in the following article.