Sodinokibi Ransomware Spreads Wide via Hacked MSPs, Sites, and Spam
#1
Quote:With the GandCrab Ransomware operation shutting down, affiliates are looking to fill the hole left behind with other ransomware. Such is the case with the Sodinokibi Ransomware, whose affiliates are using a wide range of tactics to distribute the ransomware and earn a commission.
 
This is shown in a wave of attacks involving the hacking of legitimate sites and replacing a download with GandCrab, hacking into managed service providers (MSPs) to push Sodinokibi to managed endpoints, and by utilizing spam campaigns for a wide net.
 
All of these distribution campaigns end with the same result; a victim who has their files encrypted and a ransom note explaining how to pay a ransom to get them back.
 
[Image: ransom-note.jpg]
Sodinokibi Ransom Note

Continue reading here: https://www.bleepingcomputer.com/news/se...-and-spam/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Messages In This Thread
Sodinokibi Ransomware Spreads Wide via Hacked MSPs, Sites, and Spam - by silversurfer - 21 June 19, 16:53

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
K-Lite Codec Pack 19.8.0 / 19.8.0 Update
Changes in 19.8.0: ...harlan4096 — 09:32
Mozilla Firefox Browser 152.0
Mozilla Firefox Br...harlan4096 — 08:00
qBittorrent 5.2.2
qBittorrent 5.2.2:...harlan4096 — 07:37
Opera 132.0.5905.73
Hello! We’ve ro...harlan4096 — 07:36
VirtualBox 7.2.10
VirtualBox 7.2.10 ...harlan4096 — 07:35

[-]
Birthdays
Today's Birthdays
avatar (45)JamesReshy
avatar (47)Francisemefe
avatar (40)leoniDup
avatar (39)Patrizaancem
Upcoming Birthdays
avatar (39)Tedscolo
avatar (46)brakasig
avatar (39)biobdam
avatar (40)storoBox
avatar (48)kinotHeemn
avatar (39)Ceballos1976
avatar (40)efynu

[-]
Online Staff
There are no staff members currently online.

>