Yet more ransomware operators are using DDoS attacks as leverage
Such attacks often motivate victims into faster negotiations
In what is fast emerging as a disturbing trend, another ransomware gang has now resorted to using Distributed Denial of Service (DDoS) attacks to knock their victim’s websites offline.
According to reports, ransomware operators are ganging up to launch repeated DDoS attacks against a victim’s website to force them to the negotiating table.
The reports quote Brett Callow, threat analyst at Emsisoft, who isn’t surprised at this new modus operandi: “DDoS is cheap, easy and in some cases may help convince some companies that speedy payment is the least painful option. The more pressure the criminals can put companies under, the better their chances of extracting payment.”
- Stay safe with these best ransomware protection tools
- We’ve also compiled a list of the best antivirus products
- These are some of the best endpoint protection software
Double extortion
Ransomware operations that target business networks will often steal a victim's unencrypted files as well. The original tactic was to leak the unencrypted files if the ransom isn't paid. In such an attack last year, BleepingComputer reported that an affiliate of the SunCrypt ransomware launched a DDoS attack on their victim to force them back to the negotiating table.
The Avaddon ransomware is the latest to join the ranks and has reportedly DDoSed the website of one of its victims after stealing about 44GB of personal and financial documents.
The operators of the Maze ransomware were the first ones to get multiple different threat actors to join forces and exchange tactics for more powerful strikes against their targets. It isn’t yet clear if Avaddon has joined the Maze syndicate or whether it has decided to spearhead a new operation of its own.
- Here are some of the best malware removal software
Via: BleepingComputer
Are you a pro? Subscribe to our newsletter
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.
Is your business ready for DORA? Cisco ThousandEyes outlines the "three pillars" everyone needs to have in place to be resilient
Racing against time on a menacing caldera: survey finds majority of organizations take days to tackle critical vulnerabilities, each of them a potential open goal for cybercriminals