DanaBot Adds Ransomware to its Arsenal
#1
Quote:A new sample of the DanaBot trojan spotted in a recent campaign reveals that operators behind the malware have now included a ransomware component into its code, along with new string encryption and communications protocols.
 
The update, wrote Check Point researchers on Thursday, represents a significant upgrade to the malware. However, the researchers also reported they have devised a possible way to recover files encrypted by the newly added DanaBot ransomware component.
 
“For almost a year, DanaBot has been extending its capabilities and evolving into a more sophisticated threat,” wrote Check Point researchers Yaroslav Harakhavik  and Aliaksandr Chailytko, in a breakdown of the malware’s latest components. “We assume its operators will continue to add more improvements.”

According to Check Point, recent DanaBot campaigns have migrated to Europe and are now dropping executable files containing ransomware written in the programming language Delphi. Additional capabilities include stealing browser credentials, running a local proxy to manipulate web traffic and initiating remote desktop control on targeted systems.

Read more here: https://threatpost.com/danabot-ransomwar...al/145863/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AdwCleaner 8.8.1
AdwCleaner 8.8.1 ...harlan4096 — 08:14
Brave 1.90.122 (Chromium 148.0.7778.167)
Release v1.90.122 ...harlan4096 — 08:12
Privazer 4.0.122 (13 May 2026)
Privazer v4.0.122 ...harlan4096 — 08:11
Google Announces Major Android Auto Upda...
Google has announc...harlan4096 — 08:10
QOwnNotes
26.5.10 Added a f...Kool — 06:46

[-]
Birthdays
Today's Birthdays
avatar (45)tiojusop
avatar (42)Damiennug
avatar (40)acoraxe
Upcoming Birthdays
avatar (28)akiratoriyama
avatar (48)Jerrycix
avatar (40)awedoli
avatar (82)WinRARHowTo
avatar (39)axuben
avatar (40)ihijudu
avatar (49)contjrat
avatar (44)knigiJow
avatar (46)1stOnecal
avatar (50)Mirzojap
avatar (36)idilysaju
avatar (40)GregoryRog
avatar (45)mediumog
avatar (40)odukoromu
avatar (46)Joanna4589

[-]
Online Staff
There are no staff members currently online.

>