Jump to content

Angler Exploit Kit Welcomes CryptoWall 4.0 Ransomware


steven36

Recommended Posts

After exploit kit usage had gone up by 75% in 2015, it was only a matter of time before the notorious Angler Exploit Kit showed signs of activity and indeed, it was seen adding a new tool to its malware portfolio. CryptoWall 4.0, first uncovered and analyzed by Bitdefender researchers in November 2015, is the latest threat to be added to the malicious arsenal.

 

CryptoWall 4.0 is a ransomware that encrypts files under the false pretenses of testing AV solutions for their “suitability” to protect data. Compared with its predecessors, the malware displays a redesigned ransom message, while also encoding the names of the files.

 

First identified in 2013, Angler is one of the most used exploits kits by cyber-attackers.

 

It became more prevalent in the second half of 2014 thanks to features such as: unique obfuscation, antivirus detection/virtualization software, encrypted payload and fileless infections as well as its ability to deliver a wide range of payloads including banking Trojans, rootkits, ransomware, and backdoor Trojans.

 

In 2015, researchers from Palo Alto Networks have discovered that cybercrime groups using the Angler exploit kit infected around 90,000 websites, with 30 of these ranked in Alexa’s Top 100,000.

 

Malware-as-a-service

 

Cybercriminal activities in the dark web have been constantly adapting and thriving, with malware-as-a-service business reaching the same complexity, scale and management as a legit outsourcing business.

 

Angler is a prime weapon and revenue source for cyber-criminals. When Cisco disrupted the operations of a gang responsible for up to 50% of Angler’s Exploit Kit activity, it caused losses of more than $30 million.

 

 

gv1lj3A.jpg

 

 

Should we expect a spike in ransomware in 2016?

 

With exploit kits easily available for the right amount of money, ransomware has the potential to become even more persistent and thus, more successful in extorting users. Angler remains a major threat on the malware landscape today and shows just how much money there is to be made by illicit activities.

 

Source

Link to comment
Share on other sites


  • Replies 1
  • Views 623
  • Created
  • Last Reply

I know I mentioned this in a different thread not surprising at all.  I didnt mention when they uncovered it.  We are going to see a rise in ransomware Neutrino and RIG have surfaced in new attacks I dont want to be the sorry son of a b*tch that gets hit by this and I wont as long as my malwarebytes anti-exploit premium kicks in when it happens and Im sure its going to.

Link to comment
Share on other sites


Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...