FBI and CISA alert: Beware of BlackSuit Ransomware demanding $500M

August 8, 2024
1 min read




Article Summary

TLDR:

  • BlackSuit ransomware demands up to $500 million in ransoms, with one individual demand reaching $60 million.
  • Ransomware targets critical infrastructure sectors using phishing emails, RDP, and vulnerable applications.

The BlackSuit ransomware strain has been highlighted in an advisory by the FBI and CISA, revealing exorbitant ransom demands of up to $500 million, with cases of individual demands reaching $60 million. This strain, an evolution of Royal ransomware, infiltrates systems through phishing emails, disarming antivirus software to exfiltrate sensitive data before encrypting systems. The threat actors utilize various tools like SystemBC and GootLoader malware to maintain persistence in victim networks, using techniques such as SharpShares and Mimikatz to enumerate victim networks and steal credentials. Beside the hefty ransom demands, the BlackSuit actors are employing aggressive tactics, like threatening victims with telephonic or email communications, and assessing stolen data for illegal activities to coerce targets into paying up. The rise of new ransomware variants like Lynx, OceanSpy, and Radar, along with the evolving modus operandi of existing groups like Hunters International, indicates a continuous threat landscape that organizations need to address.


Latest from Blog

Top 20 Linux Admin Tools for 2024

TLDR: Top Linux Admin Tools in 2024 Key points: Linux admin tools streamline system configurations, performance monitoring, and security management. Popular Linux admin tools include Webmin, Puppet, Zabbix, Nagios, and Ansible. Summary

Bogus job tempts aerospace, energy workers

TLDR: A North Korean cyberespionage group is posing as job recruiters to target employees in aerospace and energy sectors. Mandiant reports that the group uses fake job descriptions stored in malicious archives

Cyber insurance changes shape of security for good and bad

TLDR: Key Points: Cyber-insurance landscape is shifting to encourage greater cyber resiliency Rising costs of cyberattacks are prompting insurers to re-examine underwriting How Cyber-Insurance Shifts Affect the Security Landscape The article discusses