CyberWire Daily cover image

KillNet threatens hack-and-leak op against HIMARS maker. Online investment scams hit Europe. Microsoft associates Raspberry Robin with EvilCorp.

CyberWire Daily

00:00

Using Lockbit Two Point O Ransomewhere as a Service Payload

Fake update malwar was being delivered through existing raspberry robin infestations. The group seems to have used lockbit two point o as misdirection, buying the ransomewhere as a service tool to conceal evilcorp's presence. Using other groups malware also allows evil corp to distance themselves from known tooling to allow their victims to pay ransoms without facing risks.

Play episode from 06:24
Transcript

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app