TeamPCP Deploys CanisterWorm Wiper to Target Iranian Systems

    The cybercrime group TeamPCP has added a destructive wiper component to their cloud-native attack infrastructure, specifically targeting systems in Iran based on timezone and language settings. From Data Theft to Destruction Security researcher Charlie Eriksen at Aikido discovered that TeamPCP deployed the wiper payload over the weekend, leveraging the same technical infrastructure used in their…

    Read More

    Chapter 84: In-depth analysis and technical analysis of LockBit, the top encryption ransomware organization (Part 1)

    Read Article Excerpt LockBit operators and affiliates will find ways to obtain the victim’s initial access rights and use them to deliver encrypted ransomware. The attack methods can be roughly divided into the following methods:  1.  Extensive vulnerability scanning  . Using Nday vulnerabilities, 1day vulnerabilities, and 0day vulnerabilities to scan assets in batches is often referred to as…

    Read More