Get the latest tech news

Ransomware Associated With LockBit Still Spreading 2 Days After Server Takedown


Two days after an international team of authorities struck a major blow to LockBit, one of the Internet's most prolific ransomware syndicates, researchers have detected a new round of attacks that are installing malware associated with the group. From a report: The attacks, detected in the past 24 h...

Two days after an international team of authorities struck a major blow to LockBit, one of the Internet's most prolific ransomware syndicates, researchers have detected a new round of attacks that are installing malware associated with the group. From a report: The attacks, detected in the past 24 hours, are exploiting two critical vulnerabilities in ScreenConnect, a remote desktop application sold by Connectwise. According to researchers at two security firms -- SophosXOps and Huntress -- attackers who successfully exploit the vulnerabilities go on to install LockBit ransomware and other post-exploit malware.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Ransomware

Ransomware

Photo of Days

Days

Photo of LockBit

LockBit

Related news:

News photo

Hackers are exploiting ConnectWise flaws to deploy LockBit ransomware, security experts warn

News photo

Bluesky opens up federation, letting anyone run their own server

News photo

ScreenConnect servers hacked in LockBit ransomware attacks