Company
Date Published
Author
Justin Kestelyn, Bugcrowd Head of Product Marketing
Word count
705
Language
English
Hacker News points
None

Summary

The Cybersecurity and Infrastructure Security Agency (CISA), FBI, Department of the Treasury, and FinCEN have issued alerts for MedusaLocker and RagnarLocker ransomware families, highlighting the surge in ransomware attacks and the emergence of new business models such as RaaS gangs. MedusaLocker is an expansive family with capabilities including encrypting network drives, remapping them to encrypt content, and using ICMP sweeping to profile networks. It's primarily distributed via spam email and phishing, and has shown flexibility in shutting down security controls. RagnarLocker targets critical infrastructure sectors and has been successful in high-profile ransom attacks on companies such as Capcom and Dassault Aviation. To defend against these threats, organizations need to implement proactive security solutions, social engineering awareness and prevention training, and stay up-to-date with the latest threat intelligence.