Carbanak Banking Malware Resurfaces with New Ransomware Tactics

Carbanak Banking Malware Resurfaces with New Ransomware Tactics

December 26, 2023 at 02:33AM

Cybersecurity firm NCC Group reported that the Carbanak banking malware has been updated to launch ransomware attacks using new tactics and distribution methods, including impersonating business-related software. The attacks have increased, with over 4,000 cases reported in 2023, targeting various sectors globally. Key ransomware families include LockBit, BlackCat, and Play.

Key takeaways from the meeting notes are:

1. Carbanak malware is being used in ransomware attacks with updated tactics, including distribution through compromised websites impersonating various business-related software.

2. The number of ransomware attacks has increased, with industrials, consumer cyclicals, and healthcare being the top targeted sectors.

3. LockBit, BlackCat, and Play are the most commonly spotted ransomware families, with BlackCat recently dismantled by authorities.

4. Ransomware groups have pivoted away from QBot and started using software exploits and alternative malware families.

5. Kaspersky revealed security measures in the Akira ransomware and highlighted exploitation of security flaws in the Windows Common Log File System (CLFS) driver for privilege escalation.

It appears that the meeting notes focused on the increasing sophistication and impact of ransomware attacks, with specific details on the tactics and trends in the cybercrime landscape. These takeaways provide an overview of the major developments discussed in the meeting.

Full Article