toad.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server operated by David Troy, a tech pioneer and investigative journalist addressing threats to democracy. Thoughtful participation and discussion welcome.

Administered by:

Server stats:

334
active users

#BABUK

0 posts0 participants0 posts today

(trustwave.com) Babuk2 Bjorka: The Evolution of Ransomware for 'Data Commoditization'

trustwave.com/en-us/resources/

I have long awaited the moment when RaaS-operators and the ecosystem surrounding it would start to really dig through the data and find the juicy bits.

I know that Ransomhub have been quite good at making the data browsable but perhaps this "new" group is spearheading a new modus or trend.

Short Summary:
Trustwave SpiderLabs has uncovered a significant evolution in ransomware operations through their investigation of the apparent revival of the Babuk ransomware group. Rather than finding a traditional ransomware operation, they discovered a sophisticated threat actor named Bjorka who has transformed the ransomware model into an industrial-scale data commoditization enterprise. Bjorka is recycling previously leaked data from other ransomware groups and selling it through multiple platforms while impersonating the Babuk brand (as Babuk2).

One of the #FBI’s most wanted #cybercriminal, known by his online monikers “#Wazawaka” and “#Boriselcin,” is trolling the U.S. government by making a T-shirt with his own most wanted poster, and asking his Twitter followers if they want merch. The feds accuse him of being a “central figure” in the development and deployment of ransomware like Hive, #LockBit, and #Babuk. #Matveev, who FBI believes remains in #Russia, is unlikely to face extradition to the United States.
techcrunch.com/2023/09/18/fbi-

#RTMLocker #ransomware group emerges with a #Linux variant that also targets #NAS and #ESXİ systems. There Linux build appears to be inspired from the #Babuk groups leaked source code.

As enterprises get better at protecting Windows systems, ransomware threat actors are looking to other enterprise systems to inflict pain.

uptycs.com/blog/rtm-locker-ran

www.uptycs.comRTM Locker Ransomware as a Service (RaaS) Now on Linux - UptycsUptycs threat research team discovered a new ransomware Linux binary attributed to the RTM group Locker, a known Ransomware-as-a-Service (RaaS) provider.