Track Common Adversary Tasks Performed Using BADNEWS

 




    To know more about it, you can go through my detailed document by clicking here







Overview

BADNEWS is a malware used by the threat actors responsible for Patchwork campaign, discovered by MalwareHunterTeam, and is an updated version of LockCrypt ransomware. When it infects a system, it renders almost all the files useless by encrypting them and demands a ransom by asking the users to buy a particular decrypting tool to restore them. However, it's recommended to not pay the ransom as cyber criminals tends to avoid the victims after receiving the payment. 

How Does It Works?

The ransomware can be easily distributed via- fake software updaters, peer-to-peer (P2P) networks, third party software download sources, spam email campaigns, and trojans. While fake updaters corrupt the system either by misusing the outdated bugs/flaws or by downloading/installing malware rather than the promised updates; the P2P networks and the other sources make the malware appear as a legitimate software and tricks the users into downloading the virus. 

Prevention

The following methods will help in mitigating the cyber threat:
  • Always have ample protection like updated antivirus software, multi-factor authentication for all the system accounts, etc. 

  • Never open any suspicious emails or any links attached with them.

  • Regularly update your software while ensuring that all the vulnerabilities are patched up perfectly.









    To know more about it, you can go through my detailed document by clicking here






























































Comments

Popular posts from this blog

Query, Visualize, & Monitor Data in Azure Sentinel

Planning for Implementing SAP Solutions on Azure (Part 2 of 5)

Work with String Data Using KQL Statements