XData Ransomware on a Rampage in Ukraine

Discussion in 'malware problems & news' started by stapp, May 20, 2017.

  1. stapp

    stapp Global Moderator

    Joined:
    Jan 12, 2006
    Posts:
    24,101
    Location:
    UK
    https://www.bleepingcomputer.com/news/security/xdata-ransomware-on-a-rampage-in-ukraine/
     
  2. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    http://blog.emsisoft.com/2017/05/22/xdata/
     
  3. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Per the Emsisoft link and just like WannCry:
    Starting to see a pattern?
     
  4. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    If there are no "regular" distribution methods, then remote intrusion is probable path?
     
  5. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    That's a given.

    What needs to be done in a lab environment is some heavy duty penetration testing against all the affected Win server vers. which I believe is the entry point to try an find an inbound access point unknown vulnerability.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.