Settings

Theme

REvil ransomware hits 200 companies in MSP supply-chain attack

bleepingcomputer.com

16 points by jnichols35 4 years ago · 2 comments

Reader

afrcnc 4 years ago

dupe: https://news.ycombinator.com/item?id=27716383

steffanA 4 years ago

Good tech details here about the attack.

Also interesting "politically charged" Windows Registry keys and password changes:

"For example, a sample [VirusTotal] installed by BleepingComputer adds the HKLM\SOFTWARE\Wow6432Node\BlackLivesMatter key to store configuration information from the attack.

Advanced Intel's Vitali Kremez told BleepingComputer that another sample is configuring the device to launch REvil Safe Mode with a default password of 'DTrump4ever.'"

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection