New JanaWare Ransomware Targets Turkish Users Through Customized Adwind RAT
ID: 94ad6ae8-2802-587e-9754-f4f6ac29c60c
STIX ID: report--94ad6ae8-2802-587e-9754-f4f6ac29c60c
Feed Name: cybersecurityNews.com
Threat Score
Acronis analysts identified a campaign targeting users in Turkey that uses a customized Adwind remote access trojan to establish persistence and profile victims, then selectively deploys a newly observed ransomware strain dubbed JanaWare; the attackers use localized phishing lures, multi-stage loaders, C2-based payload delivery, and basic anti‑analysis and backup‑disabling techniques to maximize impact on personal users and small businesses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
