Last Week in Ransomware: 10.28.2024
ID: d6517c4e-8eab-5daf-b54f-bb5a700b398a
STIX ID: report--d6517c4e-8eab-5daf-b54f-bb5a700b398a
Feed Name: Halcyon Blog
Weekly ransomware briefing: researchers uncovered a new Rust-based Qilin.B variant using AES-256-CTR/ChaCha20 and RSA-4096, with enhanced evasion, service disabling, and shadow copy wiping; Akira developed a Rust payload targeting VMware ESXi to encrypt multiple VMs; Casio and Nidec suffered disruptive data theft and extortion. The report highlights a shift toward Rust for cross-platform ransomware, growing use of double extortion, and continued targeting of high-value sectors such as healthcare, manufacturing, and education.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
