Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • PM Modi in Manipur
  • Charlie Kirk killer
  • Sushila Karki
  • IND vs PAK
  • India-US ties
  • New human organ
  • Downton Abbey: The Grand Finale Movie Review
fp-logo
Microsoft warns users that one of the most dangerous cybercrime crews has dangerous new tool in arsenal
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
  • Home
  • Tech
  • Microsoft warns users that one of the most dangerous cybercrime crews has dangerous new tool in arsenal

Microsoft warns users that one of the most dangerous cybercrime crews has dangerous new tool in arsenal

FP Staff • July 18, 2024, 11:59:23 IST
Whatsapp Facebook Twitter

Octo Tempest, which typically targets VMWare ESXi servers, had been known for deploying BlackCat ransomware. However, with BlackCat now defunct, the group introduced these new payloads in the second quarter of 2024

Advertisement
Subscribe Join Us
Add as a preferred source on Google
Prefer
Firstpost
On
Google
Microsoft warns users that one of the most dangerous cybercrime crews has dangerous new tool in arsenal
Microsoft first highlighted Octo Tempest in October 2023 with an in-depth analysis that revealed the hackers are native English speakers, financially motivated, and possess extensive knowledge and experience. Image credit: Reuters

Microsoft security experts have revealed that Octo Tempest, one of the most dangerous cybercrime groups, has expanded its capabilities to include two new ransomware payloads, RansomHub and Qilin.

This information was shared on X/Twitter by Microsoft’s cybersecurity researchers, who detailed the group’s advanced techniques in social engineering, identity compromise, and persistence.

Octo Tempest, which typically targets VMWare ESXi servers, had been known for deploying BlackCat ransomware. However, with BlackCat now defunct, the group introduced these new payloads in the second quarter of 2024.

STORY CONTINUES BELOW THIS AD

Earlier this year, an affiliate associated with Octo Tempest breached Change Healthcare and extorted $22 million from the company. The money, however, was intercepted by the BlackCat maintainers, who then shut down the operation and disappeared, leaving the affiliate holding gigabytes of sensitive information.

More from Tech
How ChatGPT is becoming everyone’s BFF and why that’s dangerous How ChatGPT is becoming everyone’s BFF and why that’s dangerous America ready for self-driving cars, but it has a legal problem America ready for self-driving cars, but it has a legal problem

This incident led to the creation of RansomHub, one of the new ransomware payloads now used by Octo Tempest. Despite being relatively new, RansomHub has quickly made a name for itself, being linked to attacks on Christie’s, Rite Aid, and NRS Healthcare.

Microsoft’s researchers observed that RansomHub is often deployed in post-compromise scenarios by Manatee Tempest after initial access is gained by Mustard Tempest via FakeUpdates/Socgholish infections.

Microsoft first highlighted Octo Tempest in October 2023 with an in-depth analysis that revealed the hackers are native English speakers, financially motivated, and possess extensive knowledge and experience.

Impact Shorts

More Shorts
America ready for self-driving cars, but it has a legal problem

America ready for self-driving cars, but it has a legal problem

Alibaba, Baidu begin using own AI chips as China shifts away from US tech amid Nvidia row

Alibaba, Baidu begin using own AI chips as China shifts away from US tech amid Nvidia row

The group, formed in early 2022, initially focused on SIM swaps and stealing accounts rich in cryptocurrencies. They later expanded their operations to include phishing, social engineering, and resetting large numbers of passwords for hacked service providers.

The introduction of RansomHub and Qilin marks a significant evolution in Octo Tempest’s threat landscape. Their shift from VMWare ESXi servers to these new ransomware payloads indicates their adaptability and continuous drive to exploit vulnerabilities for financial gain. This expansion in their arsenal poses a heightened risk to organisations, emphasising the need for robust cybersecurity measures.

STORY CONTINUES BELOW THIS AD

Organisations are advised to regularly update and patch their systems to prevent the exploitation of known vulnerabilities. Implementing strong access controls can reduce the risk of compromise. Educating employees on phishing and social engineering tactics can help prevent initial access by cybercriminals. Using comprehensive security solutions can detect and mitigate threats before they cause significant damage. Ensuring that data backups are frequent and stored securely can aid in recovery in the event of a ransomware attack.

These steps are essential for organisations to protect themselves against the evolving threat posed by groups like Octo Tempest and their expanding ransomware arsenal. The landscape of cyber threats is constantly changing, and staying informed and proactive is critical to maintaining security.

End of Article
Latest News
Find us on YouTube
Subscribe
End of Article

Impact Shorts

America ready for self-driving cars, but it has a legal problem

America ready for self-driving cars, but it has a legal problem

US self-driving cars may soon ditch windshield wipers as the NHTSA plans to update regulations by 2026. State-level rules vary, complicating nationwide deployment. Liability and insurance models are also evolving with the technology.

More Impact Shorts

Top Stories

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV