cognitive cybersecurity intelligence

News and Analysis

Search

8Base ransomware operators use a variant of Phobos ransomware

Operators of the 8Base ransomware are using a new variant of the Phobos ransomware in their attacks. The 8Base group has been active since 2023 and predominantly targets small and medium-sized businesses in the US and Brazil. The new variant has numerous features allowing quicker encryption, backup removal, and system persistence. The use of hardcoded keys and different keys for each encrypted file makes decryption difficult.

Source: securityaffairs.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

How Lumma Stealer sneaks into organizations

How Lumma Stealer sneaks into organizations

The sophisticated info-stealer known as Lumma, marketed as Malware-as-a-Service (MaaS) since 2022, has gained traction in the cybercriminal underworld. Lumma’s infection methods are diverse and