Strange ransomware detection only attacks the rich
Recently, security researchers have discovered a new ransomware that works differently from other extortion malware software.
CrowdStrike and FireEye, two security companies that discovered the malware, said that since August 2018, it has earned more than $ 4 million in data encryption and extortion.
Other ransomware often spread to all victims if possible, but the new ransomware is different, it selectively infects. Specifically, Ryuk ransomware only infects large businesses, based on a security vulnerability created by another malicious software called Trickbot created earlier. Meanwhile, Ryuk does not attack small companies that are also infected with Trickbot.
CrowdStrike calls Ryuk's attack method 'big-game hunting', the target of attack is large companies and businesses.
Based on Trickbot, Ryuk will explore the system of objects to attack to understand their resources and ability to pay a huge ransom. In order for these companies to fail, the malware will not rush to attack immediately, but will conduct the most important system reconnaissance, then finally make a large-scale attack.
Currently, CrowdStrike and FireEye experts have found some evidence that Ryuk has some connection with Russia.
See more:
- 14 games on the App Store contain malicious code, iPhone users be careful
- 1.6 million computers in Vietnam were erased by the virus, losing nearly 15,000 billion in 2018
- Warning: New extortion code GandCrab is attacking Vietnamese Internet users
You should read it
- Ryuk Ransomware stops encrypting Linux directory
- STOP - Ransomware is the most active in the Internet but rarely talked about
- Disable malicious HiddenTear Ransomware with HT Brute Forcer
- Research: The golden time to prevent malicious code after the system is compromised
- Risk of ransomware infection when downloading crack software online
- Another large Data Center service provider became a victim of ransomware
- Mexico's largest oil and gas corporation has been attacked by ransomware, presenting a cyber security disaster
- List of the 3 most dangerous and scary Ransomware viruses
May be interested
- Warning: Quantum Ransomware is being rapidly deployed in lightning attacksransomware (ransomware) is probably not a new concept for most computer users. however, quantum ransomware is a term not everyone has heard of.
- Warning: These 3 dangerous ransomware could explode all over the world, 1800 large enterprises were 'shot'.the netherlands national cyber security center (ncsc) has issued an emergency report, warning of three ransomware strains that are storming around the world, and will likely explode in the near future.
- Detection of a new ransomware strain targeting the Windows search enginea ransomware attack begins when the victim receives an executable file containing malicious code via email.
- What is Fargo Ransomware? How to avoid?ransomware is a major threat to the digital world, made even more so by cybercriminals coming up with various strategies. one way to solve the problem is to learn how these attacks work.
- Detecting two unusual versions of ransomware, shows that the world of ransomware has become diversifiedinternational cybersecurity researchers recently found two completely new types of ransomware that are quite strange. they carry very different and rarely recorded features, which are the alarm bells, showing that the world of ransomware has become diverse.
- Ako ransomware is raging all over the world, what do you know about this ransomware?ako was first discovered when a victim posted information about an infection he encountered on the bleeping computer security forum.
- PureLocker - a very 'weird' ransomware strain that can encrypt serverspurelocker: new ransomware strain with an unusual attack mechanism
- What is Ransomware Bad Rabbit? How to prevent this malware effectivelyransomware bad rabbit is a type of ransomware that appeared in 2017, notable for its spread through drive-by attacks.
- Protect your computer right before the return of two extremely dangerous ransomwareover the past few months, we've witnessed a series of scary ransomware attacks including wannacry, petya and leakerlocker and now we have to protect our computers against the return of two dangerous ransomware. other.
- Ransomware is on the rise in 2025: Here are 6 quick tips to protect your data!ransomware attacks often make headlines, and the worst part is that they target ordinary people, not just large corporations.