Source |
The Hacker News |
Identifiant |
8648470 |
Date de publication |
2025-02-14 15:47:00 (vue: 2025-02-14 12:08:14) |
Titre |
RansomHub Becomes 2024\\'s Top Ransomware Group, Hitting 600+ Organizations Globally |
Texte |
The threat actors behind the RansomHub ransomware-as-a-service (RaaS) scheme have been observed leveraging now-patched security flaws in Microsoft Active Directory and the Netlogon protocol to escalate privileges and gain unauthorized access to a victim network\'s domain controller as part of their post-compromise strategy.
"RansomHub has targeted over 600 organizations globally, spanning sectors
The threat actors behind the RansomHub ransomware-as-a-service (RaaS) scheme have been observed leveraging now-patched security flaws in Microsoft Active Directory and the Netlogon protocol to escalate privileges and gain unauthorized access to a victim network\'s domain controller as part of their post-compromise strategy.
"RansomHub has targeted over 600 organizations globally, spanning sectors |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2024 600 600+ access active actors becomes been behind compromise controller directory domain escalate flaws gain globally group has have hitting leveraging microsoft netlogon network now observed organizations over part patched post privileges protocol raas ransomhub ransomware scheme sectors security service spanning strategy targeted threat top unauthorized victim |
Tags |
Ransomware
Threat
|
Stories |
|
Move |
|