Navigation
Search
|
Ghost Ransomware Continues To Infect Critical Infrastructure, Feds Warn
Friday February 21, 2025. 02:25 AM , from Slashdot
![]() Ghost first appeared in 2021, and according to the Feds, the gang will 'rotate their ransomware executable payloads, switch file extensions for encrypted files, modify ransom note text, and use numerous ransom email addresses, which has led to variable attribution of this group over time.' The Chinese group has therefore been identified as Ghost, Cring, Crypt3r, Phantom, Strike, Hello, Wickrme, HsHarada, and Rapture over time. The group's favored tactics, however, remain consistent: It targets unpatched systems to exploit known vulnerabilities that allow it to infect targets. Read more of this story at Slashdot.
https://it.slashdot.org/story/25/02/21/0032236/ghost-ransomware-continues-to-infect-critical-infrast...
Related News |
25 sources
Current Date
Feb, Fri 21 - 23:28 CET
|