Tag Archive for: Hunting

New ransomware rakes in $4 million by adopting a “big game hunting” strategy

New ransomware rakes in $  4 million by adopting a “big game hunting” strategy

(credit: Tracy O / Flickr)

A recently discovered ransomware group has netted almost $ 4 million since August, in large part by following a path that’s uncommon in its industry—selectively installing the malicious encryption software on previously infected targets with deep pockets. The method differs from the usual one of indiscriminately infecting all possible victims. That’s the take of two analyses published Thursday, one by security firm CrowdStrike and the other by competitor FireEye.

Both reports say that Ryuk, as the ransomware is known, infects large enterprises days, weeks, or as much as a year after they were initially infected by separate malware, which in most cases is an increasingly powerful trojan known as Trickbot. Smaller organizations infected by Trickbot, by contrast, don’t suffer the follow-on attack by Ryuk. CrowdStrike called the approach “big-game hunting” and said it allowed its operators to generate $ 3.7 million worth of Bitcoin across 52 transactions since August.

Besides pinpointing targets with the resources to pay hefty ransoms, the modus operandi has another key benefit: the “dwell time”—that is, the period between the initial infection and the installation of the ransomware—gives the attackers time to perform valuable reconnaissance inside the infected network. The reconnaissance lets attackers CrowdStrike dubs Grim Spider maximize the damage it causes by unleashing the ransomware only after it has identified the most critical systems of the network and obtained the passwords necessary to infect them.

Read 5 remaining paragraphs | Comments

Biz & IT – Ars Technica

Idaho hunting and fishing license info hit with data breach – KREM.com


KREM.com

Idaho hunting and fishing license info hit with data breach
KREM.com
BOISE, Idaho — Idaho Fish and Game announced Friday people who bought hunting and fishing licenses and tags before 2008 may have had their information stolen in a data breach. The online computer license sales system, Active Network, told Fish and …
Fish/Wildlife officials: No Oregon data breach, but online site now closed 'until further notice'OregonLive.com
Idaho Fish & Game warns customers after news that data breach compromised personal infoThe Spokesman Review (registration) (blog)
Fish and Game halts online tag sales after breachKTVB.com
Phys.Org –OPB News –Coeur d’Alene Press
all 94 news articles »

“data breach” – Google News

Fiber bandits: FBI hunting serial fiber-cutting vandals in California

AT&T recently announced a $ 250,000 reward to anyone with information on whoever entered its underground facilities in Livermore, California – a San Francisco suburb – and severed two of its fiber cables earlier this week, USA Today reported yesterday.

The vandalism echoes 14 similar attacks that have destroyed damaged fiber cables and disrupted internet service for customers of several service providers in the northern California region dating back to July 2014.

USA Today also reported a similar attack in late June, when “someone broke into an underground vault and cut three fiber-optic cables belonging to Colorado-based service providers Level 3 and Zayo,” according to an earlier USA Today report. The FBI confirmed at the time that it was investigating connections between that attack and 11 similar outages in the region over the year prior. 

To read this article in full or to leave a comment, please click here

Network World Colin Neagle