{"id":799590,"date":"2022-10-15T10:51:36","date_gmt":"2022-10-15T10:51:36","guid":{"rendered":"https:\/\/telecomlive.in\/web\/2022\/10\/15\/microsoft-says-ukraine-poland-targeted-with-novel-ransomware-attack\/"},"modified":"2022-10-15T10:51:36","modified_gmt":"2022-10-15T10:51:36","slug":"microsoft-says-ukraine-poland-targeted-with-novel-ransomware-attack","status":"publish","type":"post","link":"https:\/\/telecomlive.in\/web\/2022\/10\/15\/microsoft-says-ukraine-poland-targeted-with-novel-ransomware-attack\/","title":{"rendered":"Microsoft says Ukraine, Poland targeted with novel ransomware attack"},"content":{"rendered":"<p>A newly discovered hacking group has attacked transportation and logistics companies in Ukraine and Poland with a novel kind of ransomware, Microsoft said in a blog post.<\/p>\n<p>The attackers targeted a wide range of systems within an hour on Tuesday, Microsoft said, adding that it hadn&#8217;t been able to link the attacks to any known group yet.<\/p>\n<p>Notably, however, researchers found that the hacks closely mirrored earlier attacks by a Russian government-linked cyber team that had disrupted Ukraine government agencies.<\/p>\n<p>Ukraine has been the target of numerous cyberattacks by Russia since the start of the conflict in late February, according to western security researchers and senior government officials.<\/p>\n<p>The Russian Embassy in Washington did not immediately respond to a request for comment, and neither did the cybersecurity agencies of Ukraine or Poland.<\/p>\n<p>Victims of the new ransomware, named &#8220;Prestige,&#8221; overlap with those of another data-shredding cyberattack that involved the &#8220;FoxLoad,&#8221; or &#8220;HermeticWiper&#8221; malware, Microsoft said.<\/p>\n<p>That attack hit hundreds of computers in Ukraine, Lithuania, and Latvia at the beginning of the Russian invasion of Ukraine.<\/p>\n<p>&#8220;Prestige&#8221; ransomware works by encrypting a victims&#8217; data and leaving a ransom note that says the data can only be unlocked with the purchase of a decryption tool, Microsoft said.<\/p>\n<p>In several cases, the researchers noted that the hackers had gained administrator control of the victims&#8217; systems ahead of deploying the ransomware, suggesting they had stolen their credentials earlier and were waiting for the right moment.<\/p>\n<p>&#8220;The enterprise-wide deployment of ransomware is not common in Ukraine, and this activity was not connected to any of the 94 currently active ransomware activity groups that Microsoft tracks,&#8221; the researchers said.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A newly discovered hacking group has attacked transportation and logistics companies in Ukraine and Poland with a novel kind of ransomware, Microsoft said in a blog post. The attackers targeted a wide range of systems within an hour on Tuesday, Microsoft said, adding that it hadn&#8217;t been able to link the attacks to any known group yet. Notably, however, researchers found that the hacks closely mirrored earlier attacks by a Russian government-linked cyber team that had disrupted Ukraine government agencies. Ukraine has been the target of numerous cyberattacks by Russia since the start of the conflict in late February, according [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[7],"tags":[],"class_list":["post-799590","post","type-post","status-publish","format-standard","hentry","category-it-2"],"acf":[],"_links":{"self":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts\/799590","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/comments?post=799590"}],"version-history":[{"count":0,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts\/799590\/revisions"}],"wp:attachment":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/media?parent=799590"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/categories?post=799590"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/tags?post=799590"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}