Velociraptor leveraged in ransomware attacks

  • Cisco Talos has confirmed that ransomware operators are leveraging Velociraptor, an open-source digital forensics and incident response (DFIR) tool that had not previously been definitively tied to ransomware incidents.  
  • We assess with moderate confidence that this activity can be attributed to threat actor Storm-2603, based on overlapping tools

This article has been indexed from Cisco Talos Blog

Read the original article: