* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, January 1, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    2025 Year in Review: The Most Unforgettable Entertainment Moments That Captivated Audiences

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    Score Entertainment officials now projecting late spring opening for Humble location – Community Impact | News

    Entertainment Officials Reveal Exciting Late Spring Opening for Humble Location

    Tyler Perry’s accuser sent messages of gratitude and friendship years after alleged assault – Seattle Post-Intelligencer

    Tyler Perry’s Accuser Shares Message of Gratitude and Friendship Years After Alleged Assault

    Entertainment – Laredo Morning Times

    Please provide the article title you’d like me to rewrite

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

    Bacteriophage technology could reduce Salmonella in poultry – WATTPoultry.com

    How Bacteriophage Technology Is Set to Transform Salmonella Control in Poultry

    Marvell Technology: Mr. Market’s Lagging Sentiment (NASDAQ:MRVL) – Seeking Alpha

    Marvell Technology: Unpacking the Decline in Market Sentiment

    The Technological Rivalry Between The US And China – Seeking Alpha

    The Fierce Tech Battle Shaping the Future Between the US and China

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    How technology is changing the wine tasting game in Temecula – CBS News

    How Technology is Transforming the Wine Tasting Experience in Temecula

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    2025 Year in Review: The Most Unforgettable Entertainment Moments That Captivated Audiences

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    Score Entertainment officials now projecting late spring opening for Humble location – Community Impact | News

    Entertainment Officials Reveal Exciting Late Spring Opening for Humble Location

    Tyler Perry’s accuser sent messages of gratitude and friendship years after alleged assault – Seattle Post-Intelligencer

    Tyler Perry’s Accuser Shares Message of Gratitude and Friendship Years After Alleged Assault

    Entertainment – Laredo Morning Times

    Please provide the article title you’d like me to rewrite

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

    Bacteriophage technology could reduce Salmonella in poultry – WATTPoultry.com

    How Bacteriophage Technology Is Set to Transform Salmonella Control in Poultry

    Marvell Technology: Mr. Market’s Lagging Sentiment (NASDAQ:MRVL) – Seeking Alpha

    Marvell Technology: Unpacking the Decline in Market Sentiment

    The Technological Rivalry Between The US And China – Seeking Alpha

    The Fierce Tech Battle Shaping the Future Between the US and China

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    How technology is changing the wine tasting game in Temecula – CBS News

    How Technology is Transforming the Wine Tasting Experience in Temecula

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Here’s yet more ransomware using BitLocker against Microsoft’s own users

May 23, 2024
in Technology
Here’s yet more ransomware using BitLocker against Microsoft’s own users
Share on FacebookShare on Twitter

Yet more ransomware is using Microsoft BitLocker to encrypt corporate files, steal the decryption key, and then extort a payment from victim organizations, according to Kaspersky.

The antivirus maker’s Global Emergency Response team spotted the malware, dubbed ShrinkLocker, in Mexico, Indonesia, and Jordan, and said the code’s unnamed operators targeted steel and vaccine manufacturing companies, plus a government entity.

Criminals, including ransomware gangs, using legitimate software tools is nothing new — hello, Cobalt Strike. And, in fact, Microsoft previously said Iranian miscreants had abused Windows’ built-in BitLocker full-volume encryption feature to lock up compromised devices. We can recall other strains of extortionware using BitLocker on infected machines to encrypt data and hold it to ransom.

With ShrinkLocker, however, “the adversary took additional steps to maximize the damage from the attack and hinder an effective response to the incident,” Kasperky threat hunters Cristian Souza, Eduardo Ovalle, Ashley Muñoz, and Christopher Zachor said in research published Thursday. The write-up includes technical details for detecting and blocking ShrinkLocker variants.

The Register has reached out to Redmond for comment, and will update this story if and when we hear back.

sad IT pro at computer

Ransomware attacks hospitalizing security pros, as one admits suicidal feelings

READ MORE

Once they’ve got code execution on a victim’s machine, the data thieves deploy ShrinkLocker, which uses VBScript to probe Windows Management Instrumentation to determine the operating system version. It does this so that it selects the correct steps for whichever Microsoft OS is running, allowing it to extort current systems as well as those dating back to Windows Server 2008.

As for those steps, the script performs disk resizing operations (this is the “Shrink” part of ShrinkLocker) on fixed rather than network drives (presumably to minimize detection), rejigs the partitioning and boot setup, ensures BitLocker is up and running, and ultimately encrypts the computer’s storage. See the Kaspersky report for how that works specifically for each flavor of Microsoft’s operating systems.

Additionally, the malware changes the label of partitions to the extortionists’ email, which allows the victim to contact the crooks.

After sending the decryption key needed to access the scrambled drives to a server controlled by the criminals, the malware deletes the key locally, trashing the user’s recovery options, along with system logs that may help network defenders more easily spot or analyze the attack.

Finally, it shuts down the compromised system and displays the BitLocker screen with a message: “There are no more BitLocker recovery options on your PC.” Game over.

Windows users left to fend for themselves after BitLocker patch bungle

Crims abusing Microsoft Quick Assist to deploy Black Basta ransomware

Researchers claim Windows Defender can be fooled into deleting databases

Microsoft slammed for lax security that led to China’s cyber-raid on Exchange Online

In addition to listing ShrinkLocker’s indicators of compromise, and suggesting organizations use managed detection and response products to look for threats, cough, Kaspersky recommends businesses take steps to avoid falling victim to these ransomware infections.

This includes limiting user privileges so they can’t enable encryption features or modify registry keys. And if you do have BitLocker enabled, use a strong password and store recovery keys securely.

Also, monitor for VBScript and PowerShell execution events, and log as much critical system activity as possible to an external repository that can’t be deleted locally.

Plus backup systems and files frequently, store them offline, and make sure to test them to ensure they can be recovered in the event of ransomware or some other security snafu. ®

PS: Still feeling good about that Windows Recall and its encrypted snapshots?

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/05/23/ransomware_abuses_microsoft_bitlocker/

Tags: Here’sRansomwaretechnology
Previous Post

Microsoft’s deal with UAE’s G42 sparks fears over true destination of AI exports

Next Post

California Bill Would Require New Cars to Beep at You If You Speed

Exploring Freshwater Ecology and the Future of Open Science with Than Hitt

January 1, 2026

3 Must-Read Science Fiction Novels That Will Blow Your Mind

January 1, 2026

Unlocking the Hidden Secrets of Data Science Through Advent of Code

January 1, 2026

Sicily Lifestyle: A Guide to Trends, Cinema, and Luxury Tours – Hipwee

January 1, 2026

Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

January 1, 2026

The Most Unforgettable Sports Moments That Shaped 2025: A Year in Review

January 1, 2026

Why ‘Auld Lang Syne’ Still Unites the World at Midnight

January 1, 2026

Flu Cases Soar Amid Widespread Protests Fueling Iran’s Economic Turmoil

January 1, 2026

2025 Year in Review: The Most Unforgettable Entertainment Moments That Captivated Audiences

January 1, 2026

Child in Polk County Shows Measles Symptoms, Health Officials Confirm

January 1, 2026

Categories

Archives

January 2026
M T W T F S S
 1234
567891011
12131415161718
19202122232425
262728293031  
« Dec    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (999)
  • Economy (1,017)
  • Entertainment (21,894)
  • General (19,074)
  • Health (10,057)
  • Lifestyle (1,030)
  • News (22,149)
  • People (1,024)
  • Politics (1,031)
  • Science (16,233)
  • Sports (21,518)
  • Technology (16,000)
  • World (1,006)

Recent News

Exploring Freshwater Ecology and the Future of Open Science with Than Hitt

January 1, 2026

3 Must-Read Science Fiction Novels That Will Blow Your Mind

January 1, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version