Wednesday , May 15 2024
StopCrypt

StopCrypt: Most widely distributed ransomware evades detection

The SonicWall Capture Labs threat research team recently observed a new variant of StopCrypt ransomware. The ransomware executes its malicious activities by utilizing multi-stage shellcodes before launching a final payload that contains the file encryption code.

StopCrypt, also known as STOP Djvu, is a widely spread ransomware, as reported by BleepingComputer. Unlike other ransomware that focuses on big corporations, StopCrypt specifically targets everyday users.

Newly circulated reserve theft is false: Bangladesh Bank

On Tuesday (14.05.2024) Bangladesh Bank spokesperson Majbaul Haque said to media that the information published in the report is completely...
Read More
Newly circulated reserve theft is false: Bangladesh Bank

Bangladesh bank published CBS guideline Version 2.0

The banking industry in Bangladesh is the core driver in economic development of the country. The focus on inclusion and...
Read More
Bangladesh bank published CBS guideline Version 2.0

Fortinet report
Attackers exploiting vulnerabilities 50% faster, just 4.76 days

Fortinet reported that in the second half of 2023, the average time form the disclosure of a vulnerability to its...
Read More
Fortinet report  Attackers exploiting vulnerabilities 50% faster, just 4.76 days

TechCrunch report
Indian gov.t sites compromised to plant online betting ads

Indian government websites have been used by scammers to place ads that send visitors to online betting sites. TechCrunch found...
Read More
TechCrunch report  Indian gov.t sites compromised to plant online betting ads

Damage Costs Predicted To Exceed $265 Billion By 2031
Ransomware expected to attack every 2 seconds by 2031

Ransomware damage costs are predicted to exceed $265 billion by 2031, and it is expected to be the fastest growing...
Read More
Damage Costs Predicted To Exceed $265 Billion By 2031  Ransomware expected to attack every 2 seconds by 2031

ALERT CISA WARNS
Black Basta ransomware breached over 500 orgs worldwide

CISA, FBI, HHS, and MS-ISAC released a joint Cybersecurity Advisory called #StopRansomware: Black Basta. It provides tactics, techniques, procedures, and...
Read More
ALERT CISA WARNS  Black Basta ransomware breached over 500 orgs worldwide

Cyber Attack On Data Center Cooling Systems results disruption

According to cybersecurity analysts at Dragos, while cloud adoption offers many benefits for industrial companies , it also poses certain...
Read More
Cyber Attack On Data Center Cooling Systems results disruption

Chrome Zero-Day Alert — Update Your Browser to Patch

Google released an urgent security update for Chrome browser. The update fixes a critical vulnerability that is already being exploited...
Read More
Chrome Zero-Day Alert — Update Your Browser to Patch

Dell Discloses Data Breach: 49 million customers allegedly affected

A security breach has been reported, with a threat actor claiming to be selling a database with 49 million customer...
Read More
Dell Discloses Data Breach: 49 million customers allegedly affected

BIG VULNERABILITIES IN NEXT-GEN BIG-IP

Eclypsium recently found flaws in F5’s BIG-IP Next Central Manager, which could let attackers take control of the network. BIG-IP...
Read More
BIG VULNERABILITIES IN NEXT-GEN BIG-IP

This malware is spread through websites used for sharing copyrighted software. When you download the software, the malware is also downloaded.

This malware isn’t new, it has been around since 2018, but it has evolved over the years to be harder to detect.

The new version of this malware is more complex and difficult to detect because it uses multiple stages of execution. It also utilizes API calls on the stack to allocate memory.

The malware will take control of other processes and run its code in the background.

Malware can modify access control lists, preventing users from deleting crucial malware files and directories.

Once everything is done, you will receive a _readme.txt message in each directory with instructions on how to unlock your files.

Source: SonicWall

This malware has been a problem for years. To stay safe, be vigilant and avoid shady websites.

Ransomware is a big threat. It stole data from 27,000 people at Stanford. There are other malwares causing trouble, and a recent one is Vcrums malware targeting browsers.

Check Also

Ransomware

The Week in Ransomware at glance

The Australian, US, and UK governments announced sanctions against Aleksandr Gennadievich Ermakov, a Russian national …

Leave a Reply

Your email address will not be published. Required fields are marked *