Night Sky Ransomware Targets Corporate Networks

Share post:

MalwareHunterTeam has discovered a new ransomware called Night Sky, which targets companies and steals data in double extortion attacks.

When Night Sky ransomware is started, it encrypts all files except those ending with the .dll or .exe file extensions. When encrypting files, Night Sky will append the .nightsky extension to encrypted file names.

In each folder, which contains the . nightsky extension, a ransom note named NightSkyReadMe.hta contains details about what was stolen, contact emails and hardcoded credentials to the victim’s negotiation page.

Night Sky uses email addresses and a clear website running Rocket.Chat to communicate with victims.

The Tor data leak site, created by Night Sky to leak victim data, currently contains two victims: one victim is from Bangladesh and the other from Japan.

One of the victims was ordered to pay a ransom of $800,000 to obtain both a decryptor and stolen data, which was not made public.

For more information, read the original story in BleepingComputer.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways