New Amazon Ransomware Attack—‘Recovery Impossible’ Without Payment
ID: ea41dda3-be44-52b2-a87c-af29b99099af
STIX ID: report--ea41dda3-be44-52b2-a87c-af29b99099af
Feed Name: DataBreaches.Net
Threat Score
Halcyon reports a confirmed ransomware campaign, “Codefinger,” that targets AWS S3 by exploiting SSE-C (server-side encryption with customer-provided keys) to encrypt data and demand payment for the AES-256 keys needed to decrypt it, making recovery otherwise impossible; the report underscores continued ransomware activity alongside groups like Play and LockBit.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
