<tutorialjinni.com/>

BPFDoor Linux Backdoor

Posted Under: Windows on May 11, 2022
BPFDoor Linux Backdoor
BPFDoor is a highly evasive surveillance tool using the Berkeley Packet Filter (BPF). It is allegedly attributed to Chinese threat actors. It is assumed to be deployed on thousands of Linux systems, its controller has gone almost completely unnoticed by endpoint protection vendors despite it being in use for at least five years.

Quantum Ransomware

Posted Under: Windows on May 10, 2022
Quantum Ransomware
Quantum ransomware is the re-branded version of the MountLocker Ransomware. Threat actors uses IcedID malware as one of the initial access vectors that deploys Cobalt Strike. It then remotely access victim computers for data theft and to deploy Quantum Locker ransomware for encryption.

Onyx Ransomware

Posted Under: Windows on May 4, 2022
Onyx Ransomware
Onyx Ransomware is the based on the Chaos Ransomware. It encrypts used data ask a ransom of $100,000 in BTC to get the files back. It starts is operations in mid April of 2022.

REvil Ransomware

Posted Under: Windows on May 4, 2022
REvil Ransomware
REvil or Sodinokibi ransomware operation is apparently resumes again. Its operation was shutdown by law enforcement agencies in October 2021. Their TOR website is resumed and a new sample is captured in the wild.

Black Basta Ransomware

Posted Under: Windows on Apr 27, 2022
Black Basta Ransomware
Black Basta ransomware encrypts user data using a combination of AES + RSA algorithms and then demands its victims to contact them via their tor site for ransom negotiations.