Daily Tech News, Interviews, Reviews and Updates

DEV-0270, an Iranian hackers collective encrypts Windows systems; read more

An Iranian hackers collective, tracked as DEV-0270, has been exploiting the BitLocker Windows feature in cyberattacks to encrypt the victim’s systems. It has been found that this collective is operated by an Iranian company known under two names: Secnerd and Lifeweb.

Eventually, the hackers has been using the setup.bat commands to permit the BitLocker encryption, which makes the hosts out of service. And for the workstations, the collective uses DiskCryptor which is an open-source full disk encryption system for the Windows system. Consequently, it allows the encryption of a device’s entire hard drive.

Consequently, the threat intelligence experts have found that the collective can quickly abuse the newly exposed security vulnerabilities and living-off-the-land binaries (LOLBINs) in attacks.

Accordingly, the threat actor scans the internet to find the vulnerable servers and makes the organizations vulnerable to these attacks. The companies are now guided to patch their internet servers to block the abusive attempts and ransomware attacks.



Readers like you help support The Tech Outlook. When you make a purchase using links on our site, we may earn an affiliate commission. We cannot guarantee the Product information shown is 100% accurate and we advise you to check the product listing on the original manufacturer website. Thetechoutlook is not responsible for price changes carried out by retailers. The discounted price or deal mentioned in this item was available at the time of writing and may be subject to time restrictions and/or limited unit availability. Amazon and the Amazon logo are trademarks of Amazon.com, Inc. or its affiliates Read More
You might also like

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Accept Read More