"TargetCompany Ransomware Targets VMware ESXi on Linux"

1 min read
Source: BleepingComputer
"TargetCompany Ransomware Targets VMware ESXi on Linux"
Photo: BleepingComputer
TL;DR Summary

A new Linux variant of the TargetCompany ransomware, also known as Mallox, FARGO, and Tohnichi, is targeting VMware ESXi environments using a custom shell script to deliver and execute payloads. This variant ensures administrative privileges, exfiltrates data, and encrypts VM-related files, appending a ".locked" extension. The ransomware operation, active since June 2021, has primarily targeted database systems in Asia. Trend Micro attributes the latest attacks to an affiliate named "vampire" and recommends measures like enabling MFA, creating backups, and keeping systems updated.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

83%

49082 words

Want the full story? Read the original article

Read on BleepingComputer