Meet Egregor, a New Ransomware Family to Watch

  /     /     /  
Publicated : 23/11/2024   Category : security


Meet Egregor, a New Ransomware Family to Watch


Egregors operators promise to decrypt victims files and provide security recommendations in exchange for ransom payment.



Researchers have been analyzing a new ransomware family that calls itself Egregor. Attackers behind the malware, which has affected at least 13 companies, typically operate by breaking into organizations, stealing sensitive data, and running the malware to encrypt their files.
Appgate researchers tracking the threat say it contains anti-analysis techniques such as code obfuscation and packed payloads. In one of its execution stages, they found, the payload can only be decrypted if the proper key is entered in the processs command line. This means the file cant be analyzed unless someone enters the same command line used to run the payload.
Egregors ransom note promises that if the ransom is not paid within three days, the attackers will leak part of the stolen data and alert the victim companys partners and clients via mass media so they know of the breach.
If ransom is paid, Egregors operators claim they will decrypt the files and provide recommendations for securing the companys network to avoid future attacks, acting as some sort of black hat pentest team, the researchers write. 
Read more details in Appgates
full blog post
.

Last News

▸ Hack Your Hotel Room ◂
Discovered: 23/12/2024
Category: security

▸ Website hacks happened during World Cup final. ◂
Discovered: 23/12/2024
Category: security

▸ Criminal Possession of Government-Grade Stealth Malware ◂
Discovered: 23/12/2024
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Meet Egregor, a New Ransomware Family to Watch