Headlines

“Ransomware Thievery on the Rise: New Group Emerges Online and Claims 2.5 TB of Stolen Data”

"Ransomware Thievery on the Rise: New Group Emerges Online and Claims 2.5 TB of Stolen Data"cybersecurity,ransomware,databreach,onlinetheft,hacking,datasecurity
RA GROUP: The Latest Cybercrime Outfit Using Babuk Ransomware Source Code

A new cybercrime group known as RA GROUP has emerged and claimed to have stolen almost 2.5 terabytes of data from four victims, including three in the United States, just weeks after it emerged online. Researchers from Cisco Talos revealed that the latest hacker group has already listed its victims on its leak site, with the targets including a smaller insurance company and two larger financial services firms and an electronics supplier servicing industries such as computer, communication, aerospace, marine, and military. The group is just the latest to use the Babuk ransomware source code, which a developer leaked in September 2021 on a Russian-language forum.

Babuk ransomware source code has been used numerous times since the leak by other cybercrime outfits, including TORILLIA and ten ransomware families deploying VMware ESXi hypervisor lockers, according to researchers with SentinelLabs. As a result, ransomware campaigns using Babuk code skyrocketed in just a few months, presenting a significant concern for internet security. The emergence of RA GROUP proves that future copycat groups could emerge and conduct online theft.

The RA GROUP website has undergone cosmetic changes since its publication, indicating that it is still in the early stages of their operation. However, the group has shown some unusual characteristics that differ from other ransomware groups. For instance, it uses custom ransom notes for each victim, informing them that they have three days to pay before a sample is published, and seven days before the full set is published. The victim’s entities’ names are also hardcoded into the executable files, according to researchers, which is unusual behaviour for ransomware groups.

The rise in Babuk ransomware source code usage by different groups highlights the urgent need for stronger cybersecurity measures to mitigate cyber threats. Companies and organizations should invest in better cybersecurity controls, such as endpoint protection and network segmentation and educate their employees about the importance of online security. Regular data backups should also be conducted to reduce the impact of ransomware attacks.

Moreover, government regulations should be established to prevent the sale and use of stolen source codes such as Babuk ransomware code. Using the law as an instrument to promote and regulate cybersecurity compliance by companies can also help reduce cybercrime. In the face of the rise in cyber threats, it is crucial for everyone to take online security seriously.

Cybersecuritycybersecurity,ransomware,databreach,onlinetheft,hacking,datasecurity


"Ransomware Thievery on the Rise: New Group Emerges Online and Claims 2.5 TB of Stolen Data"
<< photo by cottonbro studio >>

You might want to read !