8Base operation ramps up activity with new Phobos ransomware

Increasingly prevalent attacks have been conducted by the 8Base ransomware operation as it leverages a new Phobos ransomware variant, according to The Hacker News. Intrusions commenced with the utilization of the SmokeLoader backdoor trojan to facilitate the distribution of the Phobos variant, which not only seeks persistence and ends processes that may retain target files, but also deactivates system recovery and enables backup and shadow copy deletion, a pair of reports from Cisco Talos showed.

Source: SC Magazine

 


Date:

Categorie(s):

Tag(s):