Tag Archive for: Cerber

Cerber Ransomware Operators Exploit Latest Atlassian Bug


Fraud Management & Cybercrime
,
Governance & Risk Management
,
Patch Management

Analysts Suggest Cerber Ransomware Is a Conti Derivative

Cerber Ransomware Operators Exploit Latest Atlassian Bug
Ransomware hackers are exploiting a recently patched zero-day flaw in Atlassian Confluence instances. (Image: Shutterstock)

Ransomware hackers have seized on an exploit of a recently disclosed zero-day vulnerability in Atlassian Confluence instances days after the company urged its customers to patch immediately.

See Also: Live Webinar | Generative AI: Myths, Realities and Practical Use Cases

Security companies Rapid7 and GreyNoise said they began detecting on Sunday a surge in hacks exploiting a bug Atlassian described as an improper authorization vulnerability (see: Atlassian Urges Patching Against Data Loss Vulnerability).

The Australian content collaboration and management workspace developer on Monday elevated the bug’s criticality to 10, the maximum possible on the CVSS scale.

Researchers initially described the danger from the flaw, tracked as CVE-2023-22518, as data destruction. Multiple cybersecurity firms said hackers are using it to deploy Cerber ransomware.

Security volunteers from The DFIR Report said a group using the name “C3RB3R” in the ransom note had exploited the Atlassian bug.

Cerber was among the top three ransomware variants of 2021, along with Ryuk and SamSam, according to Proofpoint. The company counted 52.5 million Cerber attacks that year, second only to Ryuk’s 93.9 million. Whether those attacks came…

Source…

Cerber ransomware using Magnitude EK and binary padding – SC Magazine UK


SC Magazine UK

Cerber ransomware using Magnitude EK and binary padding
SC Magazine UK
Cerber ransomware delivered in a Magnitude exploit kit (EK) using an interesting technique, Malwarebyte researchers have discovered.

and more »

exploit kit – read more

Cerber Renames Itself as CRBR ENCRYPTOR to Be a PITA – BleepingComputer


BleepingComputer

Cerber Renames Itself as CRBR ENCRYPTOR to Be a PITA
BleepingComputer
First we have reports from exploit kit researcher Zerophage that Cerber is being distributed through the MagnitudeEK exploit kit. Using an exploit, malware purveyors are able to install Cerber on vulnerable victims machines when they visit a site

exploit kit – read more

Cerber Takes Ransomware Crown from Locky – Infosecurity Magazine


Infosecurity Magazine

Cerber Takes Ransomware Crown from Locky
Infosecurity Magazine
Mobile ransomware is on the rise as well: Android devices are facing a raft of baddies, including HiddenAds.LCK, which locks the device from being able to remove the app, therefore allowing for more advertisement revenue for the creators; and Jisut, …

and more »

android ransomware – read more