How to Take Down the Conti Ransomware Gang – A Practical And Relevant Case Study on Taking Down Cybercriminal Infrastructure – A Practical Example

I’ve recently took the time and effort to obtain access to and data mine the recently leaked Conti ransomware gang internal communication looking for IoCs (Indicators of Compromise) including relevant OSINT artifacts which lead me to custom-tailored fa… Continue reading How to Take Down the Conti Ransomware Gang – A Practical And Relevant Case Study on Taking Down Cybercriminal Infrastructure – A Practical Example

A Compilation of Known Conti Ransomware Themed Malicious and Fraudulent MD5s – An OSINT Analysis

I’ve decide to dig a little bit deeper and find an additional set of known malicious MD5s known to have been used by the Conti Ransomware gang in an attempt to assist fellow researchers and the security industry including U.S Law Enforcement on its way… Continue reading A Compilation of Known Conti Ransomware Themed Malicious and Fraudulent MD5s – An OSINT Analysis

A Compilation of Conti Ransomware Gang BitCoin Transaction IDs – An OSINT Analysis

I’ve recently decided to take a deeper peek inside the Conti Ransomware Gang’s known BitCoin transaction IDs using public sources and I’ve decided to come up with a compilation of known Conti Ransomware Gang’s BitCoin transaction IDs for the purpose of… Continue reading A Compilation of Conti Ransomware Gang BitCoin Transaction IDs – An OSINT Analysis

Karakurt Team hits North America and Europe with data theft and extortion

Karakurt Team attacks are hitting indiscriminate targets in North America and Europe with data theft, requesting a ransom to delete stolen data. Learn more about their methods and how to protect from it.
The post Karakurt Team hits North America and Eu… Continue reading Karakurt Team hits North America and Europe with data theft and extortion

U.S. cybersecurity officials issue notice on Karakurt extortion group

The suspected Conti ransomware group spinoff employs a variety of attack methods, the notice warns.

The post U.S. cybersecurity officials issue notice on Karakurt extortion group appeared first on CyberScoop.

Continue reading U.S. cybersecurity officials issue notice on Karakurt extortion group

Costa Rica May Be Pawn in Conti Ransomware Group’s Bid to Rebrand, Evade Sanctions

Costa Rica’s national health service was hacked sometime earlier this morning by a Russian ransomware group known as Hive. The intrusion comes just weeks after Costa Rican President Rodrigo Chaves declared a state of emergency in response to a data ransom attack from a different Russian ransomware gang — Conti. Ransomware experts say there is good reason to believe the same cybercriminals are behind both attacks, and that Hive has been helping Conti rebrand and evade international sanctions targeting extortion payouts to cybercriminals operating in Russia. Continue reading Costa Rica May Be Pawn in Conti Ransomware Group’s Bid to Rebrand, Evade Sanctions

Costa Rican president claims collaborators are aiding Conti’s ransomware extortion efforts

The claim comes after Conti doubled its extortion demand to $20 million and called for the overthrow of the government.

The post Costa Rican president claims collaborators are aiding Conti’s ransomware extortion efforts appeared first on CyberScoop.

Continue reading Costa Rican president claims collaborators are aiding Conti’s ransomware extortion efforts

Costa Rican president begins tenure with ransomware national emergency declaration

A Conti affiliate claimed responsibility and has posted more than 672 GB of data so far.

The post Costa Rican president begins tenure with ransomware national emergency declaration appeared first on CyberScoop.

Continue reading Costa Rican president begins tenure with ransomware national emergency declaration

Ransomware attack attempted to destabilise Costa Rica, says outgoing president

Costa Rica’s outgoing president, Carlos Alvarado Quesada, has said that a ransomware attack on the government’s computer systems was an attempt to destabilise the country as it transitions to a new administration.

Read more in my article on the Hot … Continue reading Ransomware attack attempted to destabilise Costa Rica, says outgoing president

Conti’s Ransomware Toll on the Healthcare Industry

Conti — one of the most ruthless and successful Russian ransomware groups — publicly declared during the height of the COVID-19 pandemic that it would refrain from targeting healthcare providers. But new information confirms this pledge was always a lie, and that Conti has launched more than 200 attacks against hospitals and other healthcare facilities since first surfacing in 2018 under the name “Ryuk.” Continue reading Conti’s Ransomware Toll on the Healthcare Industry