Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Kaspersky researchers link ransomware to North-Korean 'Lazarus' group
#1
Quote:Kaspersky researchers have traced VHD ransomware, first discussed in public in the Spring of 2020, to Lazarus, a prominent North-Korean APT group, the company announced on Tuesday.

According to Kaspersky, the move by Lazarus to create and distribute ransomware, signifies a change of strategy and indicates a readiness to pursue cyber attacks for financial gain, which researchers say is highly unusual among state-sponsored APT groups.

In March and April 2020, a few cybersecurity organizations, including Kaspersky, reported on VHD ransomware – a malicious program designed to extort money from its victims, which stood out due to its self-replication method.

While, at the time, the actor behind the attacks was not determined, Kaspersky researchers linked the VHD ransomware to Lazarus with high confidence following analysis of an incident where it was used in close conjunction with known Lazarus tools against businesses in France and Asia.

( Continur Reading Article ).
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Kaspersky Ymir: new stealthy ransomware in the wild mrtrout 0 69 11-12-2024 , 08:25 AM
Last Post: mrtrout
  Ransomware: the most high-profile attacks of 2023 Kaspersky Blog mrtrout 0 1,229 02-20-2024 , 11:59 PM
Last Post: mrtrout
  United States Sanctions Affiliates of Russia-Based LockBit Ransomware Group mrtrout 0 1,372 02-20-2024 , 08:43 PM
Last Post: mrtrout
  kaspersky Ransomware-class threats mrtrout 0 846 11-06-2023 , 09:54 PM
Last Post: mrtrout
  Lazarus hackers use Windows Update to deploy malware Mohammad.Poorya 0 1,030 01-28-2022 , 05:33 AM
Last Post: Mohammad.Poorya



Users browsing this thread: 1 Guest(s)