216.73.216.6

Mallox ranomware affiliate leverages PureCrypter in MS-SQL exploitation campaigns

· Published 14/05/2024 18:03 · Modified 14/05/2024 18:30

Export JSON

Essential information

Published
14/05/2024 18:03
Modified
14/05/2024 18:30
Tags
2024-05-09 2024-05-10 2024-05-14 as208091 bitcoin clr sqlshell link http maestro mallox mallox raas mssql mssql server plugx powershell purecrypter ransom shutdown sqlshell trigona unsafe xollam
Related entities
10 observables, 1 intrusion sets (apt), 15 techniques (mitre), 3 malware, 12 others

Description

A team from security firm Sekoia has observed a series of attacks targeting vulnerable assets, including MS-SQL, and ransomware, using techniques similar to that of the ransomware.

External references