logo

New Ransomware, FessLeak, Taps Adobe Flash Flaws

ID: 9fbf723e-ce42-57ec-a7b8-7bbbfe0a75ce

STIX ID: report--9fbf723e-ce42-57ec-a7b8-7bbbfe0a75ce

Feed Name: Security Ledger

Threat Score
75/100

Date Published: 2015-02-05

Date Updated: 2026-05-05

Author: Paul Roberts

...
...

Invincea researchers report a new ransomware family named FessLeak that is spreading through malicious advertising on high-traffic websites by exploiting recently disclosed Adobe Flash vulnerabilities (notably CVE-2015-0311) and, previously, a file-less technique leveraging System32 (extrac32.exe). FessLeak encrypts victims' drives for ransom, evades analysis by detecting virtualized environments, uses short-lived domains to deliver payloads, and has been observed via malvertising on sites such as HuffingtonPost.com, Photobucket.com and RT.com.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.