New Mallox ransomware Linux variant based on leaked Kryptina code
ID: 7afcd101-1a8c-5ac7-8185-f5827c99c1ef
STIX ID: report--7afcd101-1a8c-5ac7-8185-f5827c99c1ef
Feed Name: Bleeping Computer
Threat Score
An affiliate of the Mallox ransomware group adopted leaked Kryptina Linux source code to build and deploy a rebranded Mallox Linux 1.0 encryptor that targets Linux and VMware ESXi systems; security researchers and SentinelLabs found samples, an exposed server with tools (droppers, exploit and escalation scripts), and data folders for multiple potential victims, indicating active malicious use and an expansion of Mallox from Windows to Linux environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
