Australia imposes sanctions on Russian hacker for Medibank ransomware hack
The hacker, identified as 33-year-old Russian national Aleksandr Ermakov, is believed to be a member of the notorious Russian ransomware gang REvil.
The hacker, identified as 33-year-old Russian national Aleksandr Ermakov, is believed to be a member of the notorious Russian ransomware gang REvil.
Users are urged to patch the flaw as soon as possible.
The vendor has also fixed several high-severity issues that could be abused for remote code execution.
The attack is said to have impacted Swedish cinema chain Filmstaden, universities and government agencies.
In the attack, vulnerable hosts have been targeted by JSP-based web shells hidden within the ‘admin’ folder of the ActiveMQ installation directory.
The campaign has been linked to UNC3886, a threat actor known for its previous attacks against vulnerable VMware and Fortinet appliances.
There’s no evidence that the threat actor accessed customer environments, production systems, source code, or AI systems
The world in brief: New zero-days in Citrix NetScaler, Russian hackers expand tactics, and more.
The SPICA backdoor is the first custom malware attributed to Coldriver.
The accused were allegedly involved in stealing and selling payment data on a large scale.
Showing elements 1531 - 1540