Ransomware Group REvil Hacks 200 U.S. Companies, Demands $70M In Bitcoin As Ransom

2021-7-6 20:30

REvil has reportedly pulled off the biggest ransomware attack in history. Deploying a vicious malware that has affected 200 companies in the United States. And over a million companies across the world. According to the group, they deployed a universal malware that has infected over a million network systems.

REvil is now demanding $70 million in Bitcoin to be paid to the group before they would release the universal decryptor for “more than a million” infected systems.

Related Reading | U.S. Citizens Will Soon Be Able To Buy Bitcoin Across 650 Banks

Initially, the hacker group REvil had asked each affected business to pay $45,000 in Monero individually. But then the group revised its demands and now wants $70 million in Bitcoin. This comes in light of President Biden earlier asking President Putin to stop protecting hackers. The hacker group REvil is a Russian group that has been terrorizing businesses for a while now.

How Did REvil Get In?

According to reports, the group had started by hacking a U.S.-based company named Kaseya. But according to Kaseya, only a few dozen of its customers had actually been affected by the hack. But it seems the ripple effect of those affected carried on.

Kaseya had earlier been alerted by the Dutch Institute for Vulnerability Disclosure (DIVD) that they had a number of zero-day vulnerabilities in its VSA software that were being exploited by attackers. But Kaseya said that they were actually in the process of fixing these vulnerabilities when the attack took place on Friday, July the 2nd.

Bitcoin price in the green ahead of new trading week | Source: BTCUSD on TradingView.com

After this, REvil had apparently managed to gain access to firms and businesses in 17 countries in an unprecedented attack. According to the group, they were able to get into and bring down the networks of over a million businesses worldwide.

An attack of this magnitude and sophistication had never been seen before. The sheer span of the attack boggles the mind. The attack spanned over 17 countries and somehow remained coordinated enough to shock even experienced cybersecurity experts.

REvil gained notoriety earlier this year when they successfully hacked meat processor JBS Foods.

The attack had seen the company pay $11 million in Bitcoin to the attackers.

Why Do Ransomware Attacks Always Use Bitcoin?

This is a valid question. Why Bitcoin? Given that there are much better privacy coins out there that attackers could use without having to worry about leaving a trail. REvil had earlier asked for Monero, so it is evident they know this too. Monero is a privacy coin that could see the attackers scoop their loot away without worry about evidence.

Why use a blockchain that has every single transaction evident for the world to see?

Related Reading | Is Bitcoin The New Gold? Indians Pour Billions Into Crypto

There is the fact that these attackers need evidence of their exploits. And Bitcoin provides them that.

Also, it could just come down to the kind of system the attackers have in place. It could be that they trust their Bitcoin systems to be more secure than they do the systems they have for other coins. Hence the reason they keep using Bitcoin.

But with the recent recovery of coins from the Colonial Pipeline ransomware attack, one would be right to ask if their systems are really secure.

Featured image from Document Solutions, chart from TradingView.com

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

United Bitcoin (UBTC) на Currencies.ru

$ 0.9661 (-0.95%)
Объем 24H $0
Изменеия 24h: 2.25 %, 7d: -8.21 %
Cегодня L: $0.9661 - H: $0.9661
Капитализация $0 Rank 8588
Цена в час новости $ 0.3415 (182.9%)

companies ransomware revil 200 affected vicious malware

companies ransomware → Результатов: 28


Ransomware Attacks: US Rep Asks Colonial Pipeline, CNA Financial for Payment Details

Two US companies and ransomware victims, Colonial Pipeline and CNA Financial, have been asked to reveal details of the payments made to hackers before they recovered their data. US Rep. Carolyn Maloney sent letters to the firm on Thursday requesting that they release payment documents relating to the communications made with the ransomware attackers.

2021-6-4 19:20


Foxconn Ransomware Attackers Demanded $35 Million Payment In Bitcoin (BTC) to Decrypt Files

According to reports from BleepingComputer, Foxconn, one of the largest electronic companies in the world, was faced with a ransomware attack by a popular hacking group, DopperPaymer. The report confirms the hack was first noticed on November 29th when the hackers gave the company 3 days to make a ransom payment to an unknown wallet […] The post Foxconn Ransomware Attackers Demanded Million Payment In Bitcoin (BTC) to Decrypt Files first appeared on BitcoinExchangeGuide.

2020-12-9 21:19


Фото:

Ransomware gang breach data backup software used by hundreds of US dental offices

Hundreds of dental offices across the US have been crippled by a ransomware attack targeting a remote data backup service offered by a third-party. PerCSoft and Digital Dental Record (DDR) — the two Wisconsin-based software companies — provide a solution called DDS Safe that delivers triple-layer protection by backing up sensitive medical records to the cloud, an offline workstation, and an in-office hard disk drive.

2019-8-30 15:28


Фото:

PayPal Wins Patent for Ransomware Detection Solution

Global payment processing platform PayPal has been awarded a patent for a technique that can help with the timely detection and reduction of ransomware attacks. Ransomware attacks are a form of malware that takes over the victim's computer, locks up the files therein and demands a ransom before the files can be accessed again — often to be paid in cryptocurrency.

2019-4-19 21:17


LockerGoga Ransomware Gains Momentum As It Hits Other Companies, But Norsk Hydro Doesn’t Plan to Pay Out

Cybersecurity has long battled against ransomware. Scammers that use general hacking are a lower level of threat, but the use of ransomware puts computers at risk of being completely shut down. This kind of software being integrated into a network has the power to completely ruin a system, and LockerGoga is taking full advantage. LockerGoga […]

2019-3-27 01:58


Kaspersky Lab Releases Malicious Crypto Mining “CryptoJacking” Report

Kaspersky Lab, one of the leading cyber security companies in the world has warned of malevolent personalities who have shifted from ransomware to crypto-jacking. The company, which is based in Russia, indicated that ransomware attacks were fast spreading in which a malevolent folder deadbolts a computer until ransom is paid. The company could not however […]

2018-6-30 19:43