Crypt Ghouls Targets Russian Firms with LockBit 3.0 and Babuk Ransomware Attacks
Crypt Ghouls, a new threat actor, has been connected to a series of ransomware-based cyberattacks against Russian government and commercial institutions, aimed at both financial gain and business disruption.
Utilities including Mimikatz, XenAllPasswordPro, PingCastle, Localtonet, resocks, AnyDesk, PsExec, and others are part of the toolbox that the organization under evaluation possesses, according to Kaspersky. The organization employed the popular ransomware LockBit 3.0 and Babuk as the last payload.
Governmental organizations as well as Russian mining, energy, banking, and retail businesses have been the targets of these malicious attacks.
Only two cases, according to the Russian cybersecurity vendor, could it identify the initial intrusion vector read more about Crypt Ghouls ...

