BianLian is a cybercriminal group that deals in data extortion using ransomware The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and Australian Cyber Security Centre (ACSC) have released a joint Cybersecurity Advisory to provide information on the BianLian ransomware and data extortion group. This advisory is…
Read MoreRansomware
Russian national charged with ransomware attacks
The attacks targeted law enforcement agencies and other vital sectors The Justice Department has unsealed two indictments charging a Russian national named Mikhail Pavlovich Matveev with using three different ransomware variants to attack numerous victims in the United States. Matveev, also known as Wazawaka, m1x, Boriselcin, and Uhodiransomwar, allegedly participated…
Read MoreRansomware cases in 2022
There were significant variations in the industries targeted by ransomware Barracuda Networks, a trusted partner and leading provider of cloud-first security solutions, published its 2023 Ransomware Insights report, which shows that 73 per cent of organisations surveyed globally and in Asia-Pacific (APAC), reported being hit with at least one successful…
Read MoreRansomware persisted despite improved detection
Manufacturing found to be the most extorted industry IBM Security today released its annual X-Force Threat Intelligence Index finding that although ransomware’s share of incidents declined only slightly (4 percentage points) from 2021 to 2022, defenders were more successful detecting and preventing ransomware. Despite this, attackers continued to innovate with the report…
Read MoreFBI brings down Hive Network
Thwarting over $US130 million in ransom demands The Justice Department announced today its months-long disruption campaign against the Hive ransomware group that has targeted more than 1,500 victims in over 80 countries around the world, including hospitals, school districts, financial firms, and critical infrastructure. Since late July 2022, the FBI…
Read MoreACSC ransomware profile – Royal
Royal ransomware is likely associated with Russian-speaking cybercrime actors Context: Royal is a ransomware variant first observed in September 2022, used by cybercriminals to conduct ransomware attacks against multiple sectors and organisations worldwide, including Australia. Once gaining access to a victim’s environment, cybercriminals use this ransomware for similar purposes to other…
Read MoreInternational counter ransomware initiative 2022
CRI members are building a network of trusted partners The members of the International Counter Ransomware Initiative (CRI)— Australia, Austria, Belgium, Brazil, Bulgaria, Canada, Croatia, Czech Republic, Dominican Republic, Estonia, France, Germany, India, Ireland, Israel, Italy, Japan, Kenya, Lithuania, Mexico, the Netherlands, New Zealand, Nigeria, Norway, Poland, Republic of Korea,…
Read More