UPDATE OF A NEW PERMANENT LOCKDOWN RANSOMWARE CAMPAIGN
Apr 20, 2018
Over the last 24 hours, Antuit Cyber Intelligence Research Team (“ACIRT”) have observed an increase in chatter between threat actors in various deep, dark web and hacker forums indicating that they might be planning to launch a new Permanent Lockdown Ransomware campaign targeting Financial Institutions, Retail, Critical Infrastructure and Manufacturing enterprises. There are new evidences indicating of this campaign already making inroads in Australia, New Zealand and Japan.
We have observed multiple discussions were conducted in Korean and Mandarin. Correlation and analysis of these threat actor footprints with our Cyber Threat Intelligence Analytics Platform (CAP) indicate that this is a possible threat, and your organization is advised to take precautionary measures as highlighted in this report.