Tag Archive for: Picking

CISA Warns That Royal Ransomware Is Picking Up Steam


Email Security & Protection
,
Fraud Management & Cybercrime
,
Ransomware

US Agency Says Royal Ransomware Group Is Made Up of Experienced Threat Actors

CISA Warns That Royal Ransomware Is Picking Up Steam

The Royal ransomware group targeting critical infrastructure in the United States and other countries is made up of experienced ransomware attackers and has strong similarities to Conti, the infamous Russia-linked hacking group, according to a new alert issued by U.S. authorities.

See Also: OnDemand | Navigating the Difficulties of Patching OT

The group is targeting major industries including manufacturing, communications, education and healthcare organizations in the U.S. and other countries, according to a joint advisory from the U.S. Cybersecurity and Infrastructure Security Agency and the FBI.

The attackers appear to be particularly interested in hitting the U.S. healthcare sector, demanding ransoms from $250,000 to over $2 million. “In each of these events, the threat actor has claimed to have published 100% of the data that was allegedly extracted from the victim,” the Department of Health and Human Services said in a security alert in December 2022.

In the latest advisory, CISA warns that Royal ransomware is deployed through phishing mails and is capable of disabling antivirus software. “After gaining access to victims’ networks, Royal actors disable antivirus software and exfiltrate large amounts of data before ultimately deploying the ransomware and encrypting the systems,” the alert says.

CISA says the TTPs and IOCs related to the ransomware are similar to those of Conti, the infamous Russia-linked hacking group that disbanded in May…

Source…

BlackBerry KEY2 picking up July security patch in latest update

  1. BlackBerry KEY2 picking up July security patch in latest update  Android Central
  2. BlackBerry KEY2 update brings users the July Android security patch  Phone Arena
  3. Full coverage

android security news – read more

US dropped ball on Navy railgun development—now China is picking it up

Photos posted by a Chinese People’s Liberation Army Navy (PLAN) observer show what appears to be an electromagnetic railgun being affixed to a PLAN tank landing ship, the Haiyang Shan. The LST is being used to test the weapon because its tank deck can accommodate the containers for the gun’s control system and power supply, according to comments from a former PLAN officer translated by “Dafeng Cao,” the Twitter handle of the anonymous analyst.

For nearly a decade, the US Navy’s Office of Naval Research (ONR) and various contractors worked to develop a railgun system for US ships. A prototype weapon was built by BAE Systems. Testing at the US Navy’s Naval Surface Warfare Center in Dahlgren, Virginia was deemed so successful that the Navy was planning to conduct more testing of the gun at sea aboard a Spearhead-class Joint High Speed Vessel (JHSV).  The program promised to deliver a gun that could fire projectiles at speeds over Mach 7 with a range exceeding 100 miles. The 23-pound hypervelocity projectile designed for the railgun flying at Mach 7 has 32 megajoules of energy—roughly equivalent to the energy required to accelerate an object weighing 1,000 kilograms (1.1 US tons) to 252 meters per second (566 miles an hour).

Read 3 remaining paragraphs | Comments

Biz & IT – Ars Technica

CryptoShield Infections from RIG EK Picking Up – Threatpost

CryptoShield Infections from RIG EK Picking Up
Threatpost
The RIG Exploit Kit remains fairly active despite an overall decline in such activity, and of late, it's been spreading a fairly new variant of ransomware called CryptoShield. The main culprit is an attack group known for using EITest to deliver

exploit kit – read more