New zero-day exploit for Log4j Java library is an enterprise nightmare
ALPHV BlackCat – This year’s most sophisticated ransomware
Volvo Cars discloses security breach leading to R&D data theft
Massive attack against 1.6 million WordPress sites underway
Microsoft: These are the building blocks of QBot malware attacks
Amazon explains the cause behind Tuesday’s massive AWS outage
Want to become a networking expert? Try this $69 Cisco course bundle
Researchers release ‘vaccine’ for critical Log4Shell vulnerability
Qualys BrowserCheck
STOPDecrypter
AuroraDecrypter
FilesLockerDecrypter
AdwCleaner
ComboFix
RKill
Junkware Removal Tool
How to remove the PBlock+ adware browser extension
Remove the Toksearches.xyz Search Redirect
Remove the Smashapps.net Search Redirect
Remove the Smashappsearch.com Search Redirect
Remove Security Tool and SecurityTool (Uninstall Guide)
How to remove Antivirus 2009 (Uninstall Instructions)
How to Remove WinFixer / Virtumonde / Msevents / Trojan.vundo
How to remove Google Redirects or the TDSS, TDL3, or Alureon rootkit using TDSSKiller
Locky Ransomware Information, Help Guide, and FAQ
CryptoLocker Ransomware Information Guide and FAQ
CryptorBit and HowDecrypt Information Guide and FAQ
CryptoDefense and How_Decrypt Ransomware Information Guide and FAQ
How to make the Start menu full screen in Windows 10
How to install the Microsoft Visual C++ 2015 Runtime
How to open an elevated PowerShell Admin prompt in Windows 10
How to Translate a Web Page in Google Chrome
How to start Windows in Safe Mode
How to remove a Trojan, Virus, Worm, or other Malware
How to show hidden files in Windows 7
How to see hidden files in Windows
eLearning
IT Certification Courses
Gear + Gadgets
Security
Lock
This week has quite a bit of ransomware news, including arrests, a new and sophisticated ransomware, and an attack bringing down 300 supermarkets in England.
This week’s biggest story is a law enforcement operation conducted by the FBI and Ontario Provincial Police (OPP) that arrested a Candian ransomware affiliate allegedly involved in hundreds of attacks.
We also learned about the new ALPHV (aka BlackCat) ransomware that appears to be one of the most sophisticated ransomware families we have seen this year.
Finally, this week’s largest known ransomware attack was on James Hall and Co, which affected point-of-sale systems and led to the temporary closing of over 300 Spar supermarkets in England. This week’s other known attack is on Nordic Choice Hotels by the Conti ransomware gang.
Contributors and those who provided new ransomware information and stories this week include: @Ionut_Ilascu, @FourOctets, @PolarToffee, @fwosar, @jorntvdw, @malwrhunterteam, @malwareforme, @LawrenceAbrams, @serghei, @Seifreed, @demonslay335, @billtoulas@Ax_Sharma@BleepinComputer, @VK_Intel, @DanielGallagher, @struppigel, @Boanbird@GDATA@pancak3lullz@fbgwls245@pcrisk, and @Amigo_A_, and @ValeryMarchive.
dnwls0719 found a new BigLock variant that appends the .t1000 xtension.
Approximately 330 SPAR shops in northern England face severe operational problems following a weekend cyberattack, forcing many stores to close or switch to cash-only payments.
PCrisk found two new Darhma variants that append the .Deeep and .DC extensions.
PCrisk found a new STOP ransomware variant that appends the .hgsh extension.
Nordic Choice Hotels has now confirmed a cyber attack on its systems from the Conti ransomware group.
Cerber ransomware is back, as a new ransomware family adopts the old name and targets Atlassian Confluence and GitLab servers using remote code execution vulnerabilities.
German security software company G DATA has released a vaccine that will block STOP Ransomware from encrypting victims’ files after infection.
A 31-year old Canadian national has been charged in connection to ransomware attacks against organizations in the United States and Canada, a federal indictment unsealed today shows.
dnwls0719 found a new VoidCrypt variant that appends the .wixawm extension.
The new ALPHV ransomware operation, aka BlackCat, launched last month and could be the most sophisticated ransomware of the year, with a highly-customizable feature set allowing for attacks on a wide range of corporate environments.
ALPHV encrypting a computer
Swedish carmaker Volvo Cars has disclosed that unknown attackers have stolen research and development information after hacking some of its servers.
Some backers of the LockBit 2.0 ransomware franchise claim victims they did not attack but to whom belong or are returning data stolen in another attack.
PCrisk found a new STOP ransomware variant that appends the .mljx extension.
PCrisk found a new STOP ransomware variant that appends the .pHv1 extension.
PCrisk found a new Dharma ransomware variant that appends the .Xqxqx extension.
ALPHV BlackCat – This year’s most sophisticated ransomware
Hundreds of SPAR stores shut down, switch to cash after cyberattack
The Week in Ransomware – November 5th 2021 – Placing bounties
Alleged ransomware affiliate arrested for healthcare attacks
The Week in Ransomware – December 3rd 2021 – Seizing Bitcoin
Not a member yet? Register Now
New zero-day exploit for Log4j Java library is an enterprise nightmare
Malicious Notepad++ installers push StrongPity malware
To receive periodic updates and news from BleepingComputer, please use the form below.
Terms of Use Privacy PolicyEthics Statement
Copyright @ 2003 – 2021 Bleeping Computer® LLC – All Rights Reserved
Not a member yet? Register Now
Read our posting guidelinese to learn what content is prohibited.

source

You May Also Like

Android banking malware infects 300,000 Google Play users

FBI seized $2.3M from affiliate of REvil, Gandcrab ransomware gangsEwDoor botnet targets…

Alibaba ECS instances actively hijacked by cryptomining malware

New Microsoft emergency updates fix Windows Server auth issues7 million Robinhood user…

US Education Dept urged to boost K-12 schools' ransomware defenses

New Microsoft emergency updates fix Windows Server auth issues7 million Robinhood user…

Nine WiFi routers used by millions were vulnerable to 226 flaws

Former Ubiquiti dev charged for trying to extort his employerNew malware hides…