Cyber Ransomware Attacks Threaten U.S. Government
ID: 46a30113-081a-5a63-9c14-054c4ac3af9f
STIX ID: report--46a30113-081a-5a63-9c14-054c4ac3af9f
Feed Name: Cyble Blog
This Cyble Research Lab briefing describes a February 2022 data leak in which a threat actor named 'datarobberman' posted roughly 100 Texas Republican campaign documents (including PII, IDs, tax forms, training certificates and operational/legal records) on a cybercrime forum, and it highlights Everest ransomware group claims of selling access to critical infrastructure (root access to servers/databases in the USA, Argentina, and Peru). The report warns of election-interference risks, the novel ransomware monetization of selling access rather than only leaking/storing data, and provides practical recommendations (strong passwords, audits/VAPT, user awareness, threat intelligence, patching, reducing internet exposure, and zero-trust) to mitigate impact.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
