Kyber Ransomware Targets Windows and VMware Systems, Exposing Major Defense Contractor
In a recent wave of cyberattacks, the Kyber ransomware operation has emerged as a significant threat, targeting Windows systems and VMware ESXi endpoints. Cybersecurity firm Rapid7 reported that two variants of this ransomware were deployed simultaneously, impacting a multi-billion-dollar American defense contractor.
The attack involved sophisticated techniques, including encrypting datastore files on VMware and Windows file servers. Victims found their systems crippled, with encrypted files marked by new extensions and critical services terminated. Although the ransomware claims to use post-quantum encryption methods, experts state that files remain unrecoverable without the attacker’s private keys.
To safeguard against this threat, organizations are urged to regularly back up their data, employ robust security measures, and keep systems updated.
Risk Level: High
The potential for severe operational disruption and financial loss makes this a critical cybersecurity issue.
Source: View Original Report
