Quote of the Day

Saturday, October 3, 2020

Smaug RaaS sold on Dark Web Onion service for bitcon

Anomaly's Joakim Kenny and Rory Gould investigated one of the RaaS called Smaug that has been listed for sale on the Dark Web Onion site. It seems there are only two guys behind one who developed this ransomeware possible Russian and the other guy who is a native English speaker hired by the Russian guy. The functionality is rather simple in that it just looks for the certain file, encrypts it and provides the decyptor. It doesn't have the functionality such as removing network backups or disabling shadowing copies to prevent from recovering the data. The actors are asking for 0.2 bitcon (about $2000) and 20% commission when the target pays the ransome. So far they haven't noticed any transaction on the forum. However, all you need to do the Ransome attack is simply to  click the link listed on the post, create an account, and launch the targeted attack. You don't need any programming knowledge. This Ransome seems amateurish and gives you some false sense of security that no one is going to use it. However, companies to be prepared for these type of attacks since it only needs one guy who actually act on it to do the damage. 

https://podcasts.google.com/?feed=aHR0cHM6Ly90aGVjeWJlcndpcmUubGlic3luLmNvbS9yc3M&ep=14

No comments:

Post a Comment