{"id":41308,"date":"2020-07-18T02:00:42","date_gmt":"2020-07-18T06:00:42","guid":{"rendered":"https:\/\/www.opensource.im\/uncategorized\/the-week-in-ransomware-july-17th-2020-freshly-squeezed-bleepingcomputer.php"},"modified":"2020-07-18T02:00:42","modified_gmt":"2020-07-18T06:00:42","slug":"the-week-in-ransomware-july-17th-2020-freshly-squeezed-bleepingcomputer","status":"publish","type":"post","link":"https:\/\/euvolution.com\/open-source-convergence\/encryption\/the-week-in-ransomware-july-17th-2020-freshly-squeezed-bleepingcomputer.php","title":{"rendered":"The Week in Ransomware &#8211; July 17th 2020 &#8211; Freshly squeezed &#8211; BleepingComputer"},"content":{"rendered":"<p><p>With Twitter hackers, 10\/10 vulnerabilities, and Cloudflare outages this week, thankfully ransomware has been pretty slow this week.<\/p>\n<p>The biggest news is Orange confirming they were hit with a Nefilim ransomware attack and business customer's data being stolen. We also saw an interesting ransomware that utilizes the Age encryption tool.<\/p>\n<p>Other than that, it has mostly been smaller attackers and new ransomware variants released.<\/p>\n<p>Contributors and those who provided new ransomware information and stories this week include: @demonslay335, @VK_Intel, @struppigel, @malwrhunterteam, @fwosar, @BleepinComputer, @LawrenceAbrams, @Seifreed, @serghei, @DanielGallagher, @PolarToffee, @FourOctets, @jorntvdw, @Ionut_Ilascu, @malwareforme, @JakubKroustek, @xiaopao80087499, @fbgwls245, @Amigo_A_, @campuscodi, and @360TotalSec.<\/p>\n<p>xiaopaofound a new Matrix Ransomware variant that appends the .AL8P extension and drops a ransom note namedReadme_AL8P.rtf.<\/p>\n<p>dnwls0719 found a new FonixCrypter variant that appends the.XINOF extension.<\/p>\n<\/p>\n<p>A new and targeted ransomware named AgeLocker utilizes the 'Age' encryption tool created by a Google employee to encrypt victim's files.<\/p>\n<\/p>\n<p>Michael Gillespiefound a new STOP Ransomware variant that appends the .repl extension to encrypted files.<\/p>\n<p>Jakub Kroustekfound two new variants of the Dharma Ransomware that append either the .data or .smpl extensionto encrypted files.<\/p>\n<p>The data theft and name-and-shame tactics initiated by Maze in November 2019 and subsequently adopted by multiple other groups have blurred the line between ransomware attack and data breach.<\/p>\n<p>Michael Gillespiefound a new Makop Ransomware variant that appends the .zbw extension and drops a ransom note namedreadme-warning.txt.<\/p>\n<p>Michael Gillespie is looking for a new ransomware that appends the .FastWind extension and drops a ransom note named ransomware.txt.<\/p>\n<p>Recently, 360 Security Center has detected that a file encryption virus in the form of a hoax has appeared on the network. In view of the encrypted file suffix of the virus is named .flowEncryption, we named it flowEncryption file encryption virus.<\/p>\n<p>Orange has confirmed to BleepingComputer that they suffered a ransomware attack exposing the data of twenty of their enterprise customers.<\/p>\n<p>Michael Gillespiefound a new Makop Ransomware variant that appends the .BNFD extension to encrypted files.<\/p>\n<p>Blackbaud, a provider of software and cloud hosting solutions, said it stopped a ransomware attack from encrypting files earlier this year but still had to pay a ransom demand anyway after hackers stole data from the company's network and threatened to publish it online.<\/p>\n<p>Michael Gillespiefound a new Dharma Ransomware variant that appends the .spareextension to encrypted files.<\/p>\n<p>Michael Gillespiefound a new Maoloa Ransomware variant that appends the .Globeimposter-Alpha865qqzextension to encrypted files.<\/p>\n<p>Michael Gillespiefound a new STOP Ransomware variant that appends the .kuusextension to encrypted files.<\/p>\n<p><!-- Auto Generated --><\/p>\n<p>Originally posted here:<br \/>\n<a target=\"_blank\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/the-week-in-ransomware-july-17th-2020-freshly-squeezed\/\" title=\"The Week in Ransomware - July 17th 2020 - Freshly squeezed - BleepingComputer\" rel=\"noopener noreferrer\">The Week in Ransomware - July 17th 2020 - Freshly squeezed - BleepingComputer<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> With Twitter hackers, 10\/10 vulnerabilities, and Cloudflare outages this week, thankfully ransomware has been pretty slow this week. The biggest news is Orange confirming they were hit with a Nefilim ransomware attack and business customer's data being stolen<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[45],"tags":[],"class_list":["post-41308","post","type-post","status-publish","format-standard","hentry","category-encryption"],"_links":{"self":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts\/41308"}],"collection":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/comments?post=41308"}],"version-history":[{"count":0,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts\/41308\/revisions"}],"wp:attachment":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/media?parent=41308"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/categories?post=41308"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/tags?post=41308"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}