Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

The Week in Ransomware – December 24th 2021 – No rest for the Weary

The Week in Ransomware – December 24th 2021 – No rest for the Weary

The holiday season is here, but there is no rest for our weary admins as ransomware gangs are still conducting attacks over the Christmas and New Years breaks.

This is especially true this year, with the rampant Log4j exploitation over the past few weeks leading to compromised networks that are ripe for ransomware deployment while the workforce is on vacation.

Network admins and security researchers are already reporting that BlackCat/ALPHV affiliates continue to attack the enterprise today as we move into the Christmas weekend, so it is vital to keep an eye on your networks and respond quickly to unusual behavior.

Also Read: PDPA Singapore Guidelines: 16 Key Concepts For Your Business

Good luck out there and wishing everyone a very happy and uneventful holiday season!

Contributors and those who provided new ransomware information and stories this week include: @LawrenceAbrams@Ionut_Ilascu@PolarToffee@BleepinComputer@struppigel@Seifreed@VK_Intel@billtoulas@serghei@jorntvdw@FourOctets@malwareforme@fwosar@JakubKroustek@DanielGallagher@malwrhunterteam@demonslay335@ValeryMarchive@ESETresearch@LabsSentinel@SophosLabs@threatresearch@NCCGroupplc@pcrisk@th3_protoCOL@0daydorpher, and @siri_urz.

December 18th 2021

New Dharma Ransomware variant

Jakub Kroustek found a new Dharma ransomware variant that appends the .ver extension.

December 20th 2021

New STOP Ransomware variant

PCrisk found a new STOP ransomware variant that appends the .nnqp extension to encrypted files.

New Dharma Ransomware variant

PCrisk found a new Dharma ransomware variant that appends the .C1024 extension to encrypted files.

December 21st 2021

FreeBSD SFile ransomware encryptor

ESET discovered a new FreeBSD version of the SFile ransomware.

PYSA ransomware behind most double extortion attacks in November

Security analysts from NCC Group report that ransomware attacks in November 2021 increased over the past month, with double-extortion continuing to be a powerful tool in threat actors’ arsenal.

December 22nd 2021

New Dharma Ransomware variant

Jakub Kroustek found a new Dharma ransomware variant that appends the .RED extension.

Also Read: Data Protection Officer Singapore | 10 FAQs

New Phobos Ransomware variant

PCrisk found a new Phobos ransomware variant that appends the .health extension to encrypted files.

December 23rd 2021

AvosLocker ransomware reboots in Safe Mode to bypass security tools

In recent attacks, the AvosLocker ransomware gang has started focusing on disabling endpoint security solutions that stand in their way by rebooting compromised systems into Windows Safe Mode.

New Surtr ransomware

S!Ri found a new ransomware that appends the .surtr extension to encrypted files.

Surtr ransomware

December 24th 2021

Rook ransomware is yet another spawn of the leaked Babuk code

A new ransomware operation named Rook has appeared recently on the cyber-crime space, declaring a desperate need to make “a lot of money” by breaching corporate networks and encrypting devices.

Global IT services provider Inetum hit by ransomware attack

As first reported by Valéry Marchive, less than a week before the Christmas holiday, French IT services company Inetum Group was hit by a ransomware attack that had a limited impact on the business and its customers.

Noberus/ALPHV/BlackCat attacking during Christmas

It’s not uncommon for ransomware gangs to take a bit of time off during the holidays. However, looks like BlackCat affiliates are continuing to work through the holidays.

That’s it for this week! Hope everyone has a nice weekend!

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us