Skip to main content

Posts

Showing posts from June, 2020

Lucifer Malware Emerges As New Threat To Windows Devices

Lucifer Malware Targeting Windows Researchers from Palo Alto Networks’ Unit 42 division have found an active campaign of new malware in the wild. Dubbed ‘Satan’ by the threat actors, and ‘Lucifer’ by the researchers this malware exploits known bugs to infect Windows machines. Sharing the details in a post, the researchers explained that they caught two strains of Lucifer while analyzing the campaign. Yet, their functionalities predominantly remained the same, version 2 is more advanced. Briefly, Lucifer malware aims at cryptojacking by dropping XMRig on target devices, and DDoS attacks.  Moreover, the other functionalities are slightly different for the two versions. The Lucifer v.1 performs cryptojacking, DDoS attacks, brute-forcing credentials, and self-propagation. Whereas, Lucifer v.2, in addition to these capabilities, also exhibits anti-sandbox and anti-debugger functionalities. Also, the malware tends to drop EternalBlue, EternalRomance, and DoublePulsar backdoors (under certain

New Java Based Ransomware Attack Windows & Linux Users

Tycoon Ransomware – New Java Based Ransomware Attack Windows & Linux Users Security experts have warned that hackers are using a new multi-platform Java ransomware “Tycoon” to target Windows and Linux users to lock down the files. We all know that hackers are constantly looking for new means to attack data centers and systems of normal users to steal essential data and information. Since Microsoft Windows is the most used OS, that’s why hackers are making it as their target. hackers are paying more and more attention to other operating systems as well, like macOS and Linux.  As hackers are betting massively on multi-platform malware and ransomware, that affects all the major platforms. The main goal of this critical vulnerability is to infect the SMBs in the software and education industries. Tycoon Ransomware Security experts at BlackBerry  Research  and Intelligence Team in association with KPMG’s UK Cyber ​​Response Services have named this ransomware as “Tycoon,” and it has bee