Security News > 2022 > March > FBI: Avoslocker ransomware targets US critical infrastructure
The Federal Bureau of Investigation warns of AvosLocker ransomware being used in attacks targeting multiple US critical infrastructure sectors.
"AvosLocker is a Ransomware as a Service affiliate-based group that has targeted victims across multiple critical infrastructure sectors in the United States including, but not limited to, the Financial Services, Critical Manufacturing, and Government Facilities sectors," the FBI said [PDF].
"As a result, AvosLocker indicators of compromise vary between indicators specific to AvosLocker malware and indicators specific to the individual affiliate responsible for the intrusion."
The advisory provides network defenders with indicators of compromise they can use to detect and block AvosLocker ransomware attacks.
You can find more info on AvosLocker ransomware and what you need to do if you get hit by this ransomware in our forum.
Mitigation measures to help network defenders prevent AvosLocker ransomware attacks include network segmentation and regular offline backups, as well as keeping software up to date, especially Microsoft Exchange Server, a known attack vector used by AvosLocker affiliates.
News URL
Related news
- Iran-linked crew used custom 'cyberweapon' in US critical infrastructure attacks (source)
- US sanctions Chinese firm for hacking firewalls in ransomware attacks (source)
- US sanctions Chinese cybersecurity company for firewall compromise, ransomware attacks (source)
- US Sanctions Chinese Cybersecurity Firm for 2020 Ransomware Attack (source)
- New IOCONTROL malware used in critical infrastructure attacks (source)
- CISA confirms critical Cleo bug exploitation in ransomware attacks (source)
- US charges Russian-Israeli as suspected LockBit ransomware coder (source)
- US charges suspected LockBit ransomware developer (source)
- US charges operators of cryptomixers linked to ransomware gangs (source)
- FBI wipes Chinese PlugX malware from over 4,000 US computers (source)