DBGer Ransomware Uses EternalBlue and Mimikats to Spread Across Networks

Discussion in '0-day Release' started by silversurfer, Jun 15, 2018.

  1. silversurfer

    silversurfer Malware Tester Silver Member

    The authors of the Satan ransomware have rebranded their "product" and they now go by the name of DBGer ransomware, according to security researcher MalwareHunter, who spotted this new version earlier today.

    The change was not only in name but also in the ransomware's modus operandi. According to the researcher, whose discovery was later confirmed by an Intezer source code analysis, the new (Satan) DBGer ransomware now also incorporates Mimikatz, an open-source password-dumping utility.

    The purpose of DBGer incorporating Mimikatz is for lateral movement inside compromised networks. This fits a recently observed trend in Satan's modus operandi.

    Full Article: https://www.bleepingcomputer.com/ne...lblue-and-mimikats-to-spread-across-networks/
    RGiskardR and Der.Reisende like this.
  2. Google Adsense

Share This Page