CYFIRMA Research - A Ransomware That Doesn't Extort Money - WinDestroyer & Its Origin
Manage episode 405297969 series 3472819
The CYFIRMA research team has uncovered a new and highly destructive malware, WinDestroyer. It lacks ransom demands, is geopolitically motivated, and is developed for hacktivism against the backdrop of the Russia-Ukraine conflict. The malware employs DLL reload attacks, API hammering, and lateral movement capabilities, rendering systems unusable. During our investigation, we have been able to attribute WinDestroyer to a threat actor residing in Saint Petersburg, Russia.
Link to the Research Report: A Ransomware That Doesn't Extort Money WinDestroyer & Its Origin - CYFIRMA
#Cybersecurity #ThreatIntelligence #Ransomware #ETLM
https://www.cyfirma.com/
152 episodes