BlackCat Ransomware Successor Cicada3301 Emerges

October 22, 2024 at 07:06AM The Cicada3301 ransomware, resembling BlackCat, signifies a resurgence of this threat. It is viewed as a successor to BlackCat, highlighting ongoing concerns in cybersecurity. ### Meeting Notes Takeaways: 1. **Cicada3301 Ransomware**: – There are notable similarities between Cicada3301 and BlackCat ransomware. – Cicada3301 may signify the return of this particular … Read more

Researchers Uncover Cicada3301 Ransomware Operations and Its Affiliate Program

October 17, 2024 at 10:15AM Cybersecurity researchers have investigated Cicada3301, a new ransomware-as-a-service (RaaS), revealing its affiliate program on the dark web. With advanced features and capabilities, it has compromised over 30 organizations, primarily in the U.S. and U.K. Its sophisticated operation poses a significant threat to network security. ### Meeting Takeaways – Oct 17, … Read more

Cicada ransomware may be a BlackCat/ALPHV rebrand and upgrade

September 4, 2024 at 10:37AM The Cicada3301 ransomware, linked to at least 20 victims since June, shares similarities with BlackCat ransomware. It’s coded in Rust and targets Windows’ Volume Snapshot Service, manipulating the shadow copies. The malware also embeds user credentials and customizes ransom notes per victim. Its detection capabilities and targets, primarily SMBs, are … Read more

Linux version of new Cicada ransomware targets VMware ESXi servers

September 3, 2024 at 11:00AM Cicada3301, a new ransomware-as-a-service, is impersonating the legitimate Cicada 3301 organization, conducting cyber attacks and recruiting affiliates. This operation uses double-extortion tactics and targets specific file extensions on Windows and Linux/VMware ESXi systems. Its strategic design is aimed at maximizing damage in enterprise environments and pressuring victims to pay ransoms. … Read more

BlackCat Spinoff ‘Cicada3301’ Uses Stolen Creds on the Fly, Skirts EDR

September 3, 2024 at 10:23AM Cicada3301, a new ransomware, has evolved from the infamous 4chan puzzle project. It has already compromised 21 companies, mainly in Europe and North America. With advanced features and similarities to BlackCat ransomware, it poses a significant threat. Its stealth tactics and obfuscation have raised concerns, emphasizing the need for robust … Read more

New Rust-Based Ransomware Cicada3301 Targets Windows and Linux Systems

September 3, 2024 at 09:54AM Cicada3301, a new ransomware variant, targets small to medium-sized businesses through opportunistic attacks. Written in Rust, it targets Windows and Linux/ESXi hosts and uses techniques similar to the now-defunct BlackCat operation. It encrypts files, manipulates system recovery, and compromises EDR detection. Its emergence may be connected to the demise of … Read more

Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems

September 1, 2024 at 12:39PM Cicada3301 is a new ransomware-as-a-service (RaaS) operation with 19 victims listed on its portal. It conducts double-extortion tactics, utilizing data theft as leverage. The malware overlaps with ALPHV/BlackCat, employing similar encryption methods. It may have ties to the Brutus botnet and targets VMware ESXi setups, causing significant damage to enterprise … Read more