Diagram shows how ransomware operators incorporate the SystemBC malware into an attack. (Source: Sophos)
Several recent ransomware attacks, including those involving Ryuk and Egregor, have used a commodity malware variant called SystemBC as a backdoor, security firm Sophos reports.
First uncovered by security firm Proofpoint in August 2019, SystemBC works as a network proxy for concealed communications and as a remote access Trojan, or RAT, that allows threat actors to deploy additional commands and scripts to infected Windows devices and to gather data.
While researchers have tracked SystemBC over the years, the Sophos report finds that its creators have added new features, which ransomware operators and their affiliates are taking advantage of to deploy their crypto-locking malware.
Are snow days a thing of the past? With Baltimore-area schools teaching virtually, they re likely to look different
baltimoresun.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from baltimoresun.com Daily Mail and Mail on Sunday newspapers.
BCPS IEP Meetings Postponed Due To Ransomware Attack
wypr.org - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from wypr.org Daily Mail and Mail on Sunday newspapers.
BCPS doesn t communicate? That s no shock | READER COMMENTARY
baltimoresun.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from baltimoresun.com Daily Mail and Mail on Sunday newspapers.
Baltimore County school services restored after temporary Google outage
wbal.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from wbal.com Daily Mail and Mail on Sunday newspapers.