Get the latest tech news

New Linux Version of Ransomware Targets VMware ESXi


"Researchers observed a new Linux variant of the TargetCompany ransomware family that targets VMware ESXi environments," reports BleepingComputer: In a report Wednesday, cybersecurity company Trend Micro says that the new Linux variant for TargetCompany ransomware makes sure that it has administrat...

"Researchers observed a new Linux variant of the TargetCompany ransomware family that targets VMware ESXi environments," reports BleepingComputer: In a report Wednesday, cybersecurity company Trend Micro says that the new Linux variant for TargetCompany ransomware makes sure that it has administrative privileges before continuing the malicious routine... Once on the target system, the payload checks if it runs in a VMware ESXi environment by executing the 'uname' command and looking for 'vmkernel.' It contains victim information such as hostname, IP address, OS details, logged-in users and privileges, unique identifiers, and details about the encrypted files and directories. "After all tasks have been completed, the shell script deletes the payload using the 'rm -f x' command so all traces that can be used in post-incident investigations are wiped from impacted machines."

Get the Android app

Or read this on Slashdot

Read more on:

Photo of New Linux

New Linux

Photo of ESXi

ESXi

Photo of ransomware targets

ransomware targets

Related news:

News photo

VMware fixes critical sandbox escape flaws in ESXi, Workstation, and Fusion

News photo

New Linux glibc flaw lets attackers get root on major distros