Dutch cybersecurity experts warning companies about global ransomware attack


Dutch cybersecurity companies have issued warnings to thousands of companies about a global ransomware attack. The attackers, known as the Cactus Gang, are from Eastern Europe and have been active since the end of last year.

The cybercriminals managed to penetrate the security systems of 122 companies, and at least 10 of those are in the Netherlands. The security experts exchanged information regarding the matter, and discovered that victims were being attacked in the same way every time. The four companies shared their findings with the Dutch authorities. There are around 5,200 Qlik Sense servers in use worldwide, of which around 3,100 are vulnerable.

Read more…
Source: NL Times


Sign up for our Newsletter


Related:

  • Lazarus hackers abuse Dell driver bug using new FudModule rootkit

    October 1, 2022

    The notorious North Korean hacking group ‘Lazarus’ was seen installing a Windows rootkit that abuses a Dell hardware driver in a Bring Your Own Vulnerable Driver attack. The spear-phishing campaign unfolded in the autumn of 2021, and the confirmed targets include an aerospace expert in the Netherlands and a political journalist in Belgium. According to ESET, which ...

  • Europol: Phishing gang behind several million euros worth of losses busted in Belgium and the Netherlands

    June 21, 2022

    A cross-border operation, supported by Europol and involving the Belgian Police (Police Fédérale/Federale Politie) and the Dutch Police (Politie), resulted in the dismantling of an organised crime group involved in phishing, fraud, scams and money laundering. The action day on 21 June 2022 led to: 9 arrests in the Netherlands 24 house searches in the NetherlandsSeizures including firearms, ...

  • International operation takes down Russian RSOCKS botnet

    June 17, 2022

    A Russian operated botnet known as RSOCKS has been shut down by the US Department of Justice acting with law enforcement partners in Germany, the Netherlands and the UK. It is believed to have compromised millions of computers and other devices around the globe. The RSOCKS botnet functioned as an IP proxy service, but instead of ...

  • The BlackByte ransomware group is striking users all over the globe

    May 18, 2022

    The BlackByte ransomware group uses its software for its own goals and as a ransomware-as-a-service offering to other criminals. The ransomware group and its affiliates have infected victims all over the world, from North America to Colombia, the Netherlands, China, Mexico and Vietnam. Cisco Talos has been monitoring BlackByte for several months and Talos can confirm ...

  • Ukraine: EU deploys cyber rapid-response team

    February 22, 2022

    A cyber rapid-response team (CRRT) is being deployed across Europe, after a call for help from Ukraine. The newly formed team of eight to 12 experts, from Lithuania, Croatia, Poland, Estonia, Romania, and the Netherlands, has committed to help defend Ukraine from cyber-attacks – remotely and on site in the country. An official warned attacks were likely. Read ...

  • Europol coordinates action against bomb manuals available online

    February 3, 2022

    On 1 February, a large-scale Referral Action Day targeting terrorist content online took place at Europol’s headquarters. The European Union Internet Referral Unit (EU IRU) at Europol’s European Counter Terrorism Centre (ECTC) coordinated the referral activity, which saw the involvement of specialised counter terrorism units from France, Germany, Hungary, Italy, the Netherlands, Portugal, Spain, Switzerland ...