REvil Crushed By Enforcement Using ‘Compromised Backups’

Share post:

Several countries that work together to address the problem or cyber attacks, have recently took down the REvil Ransomware gang using one of the gang’s favorite tactics of compromised backups.

According to Reuters, “The FBI in conjunction with Cyber Command, the Secret Service, and like-minded countries, have truly engaged in significant disruptive actions against these groups.”

Previously, the FBI had hacked REvil’s servers and received a universal decryption key after Kaseya’s attack.

Holding onto the key, however, proved crucial, as it allowed the FBI and its collaborators to penetrate deep into REvil’s operations, as it also ensured that their software remained hidden in backups recently used by gang member “0 _ neday” to restore operations after initially going offline four days ago.

For more information, read the original story in Arstechnica.

SUBSCRIBE NOW

Related articles

Cyber Security Today, May 3, 2024 – North Korea exploits weak email DMARC settings, and the latest Verizon analysis of thousands of data breaches

This episode reports on warnings about threats from China, Russia and North Korea, the hack of Dropbox Sign's infrastructure

Hashtag Trending for World Password Day, Thursday, May 2nd, 2024

Security firm Okta warns of an unprecendented password stuffing attack that is piggybacking on regular user’s mobile and...

Google Chrome’s new post-quantum cryptography causes connection issues

The latest update to Google Chrome, version 124, which integrates a new quantum-resistant encryption mechanism, has led to...

UK legislation bans weak passwords

Starting Monday, the UK will enforce new laws banning the sale of devices with weak default passwords such...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways