In part of a three-part series, Andrew Brandt and Anand Ajjan of Sophos write: For the past several months, both SophosLabs and the Sophos Rapid Response team have been collaborating on detection and behavioral analysis of a ransomware that emerged last year and has undergone rapid growth. The ransomware, which calls itself Conti, is delivered…
Category: Malware
Ransomware attacks on medical entities continue: a laboratory in Italy and a health care service in New Mexico among latest victims
Ransomware attacks on medical entities continue. Today, we report on one attack in Italy and one in the U.S. And sadly, by the end of the day, there may well be more. Italy Marco De Felice (aka @amvinfe) reports that RagnarOK threat actors have attacked the Valdès Analysis Laboratory in Cagliari. The attack occurred on…
Could an ex-employee be planting ransomware on your firm’s network?
We’ve all seen too many instances where vengeful former employees have tried to sabotage their former employer’s network. Even when their employers remember to revoke access for the individual, they often find other ways in — like using a former colleague’s credentials or having previously created another user on the system with credentials. But would…
Villefranche-sur-Saône hospital victim of a computer attack
L’Obs with AFP report: After that of Dax , the Villefranche-sur-Saône (Rhône) hospital center announced on Monday February 15 that it was the victim of a “major” computer attack , detected at 4:30 am. This attack by the RYUK crypto-virus (a “ransomware” ) “strongly impacts” the sites of Villefranche, Tarare and Trévoux of the North West Hospital,…
Hacker attack on the Urological Clinic Munich Planegg
Martin Bernstein reports (translation): The Urological Clinic Munich Planegg(UKMP) and its patients recently fell victim to a hacker attack. This emerges from an information letter that the clinic sent out to patients in early February. It is obliged to do so according to the General Data Protection Regulation. The cyber attack occurred in mid-January. The clinic management did not respond to a…
Egregor ransomware operators arrested in Ukraine
Catalin Cimpanu reports: Members of the Egregor ransomware cartel have been arrested this week in Ukraine, French radio station France Inter reported on Friday, citing law enforcement sources. […] According to the France Inter report, the arrested suspects are believed to some of these “affiliates” (or partners) of the Egregor gang, which help prop up…