SEXi Ransomware Desires VMware Hypervisors in Ongoing Campaign

April 4, 2024 at 06:34PM A fresh Babuk ransomware variant called “SEXi” has targeted VMware ESXi servers, including a hit on IxMetro PowerHost in Chile. The attackers requested a $140 million ransom, but the CEO indicated it would not be paid. The attack is linked to a broader ransomware campaign, with related binaries and novel … Read more

And that’s a wrap for Babuk Tortilla ransomware as free decryptor released

January 9, 2024 at 08:22AM Security researchers, in collaboration with Cisco Talos, Avast, and the Netherlands police, have released an updated decryptor for the Babuk ransomware Tortilla variant. The decryptor, freely available online, utilizes a single private key across all victims, making it straightforward to support Tortilla victims. Organizations can access the decryptor from Avast … Read more