GreenFlash Sundown exploit kit has been repurposed to drop a botnet, cryptominer, and very potent ransomware (all three at once) via drive-by downloads served via website ads. This kit hadn’t been targeted at North America previously but this recent repurposing has been designed to primarily attack English language users in North America.
The biggest mitigations are fully patched Flash & web browsers, safe and careful browsing habits, and being trained in security awareness to learn to avoid clicking links in emails that may be trying to direct you to a site serving the malvertisement.
Also, interesting note – the exploit kit executes a system check to make sure the environment is “desirable” before it fires the main payload, so the same malicious ad may trigger ransomware on one system but not another.
References:
https://blog.malwarebytes.com/threat-analysis/2019/06/greenflash-sundown-exploit-kit-expands-via-large-malvertising-campaign/
Subscribe to Email Updates
Recent Posts
Posts by Topic
- Cybersecurity (31)
- IT (31)
- Cyber-Security (22)
- security (13)
- technology (12)
- Email Compromise (10)
- Business (8)
- Small Business (8)
- Cyber Crime (7)
- Cybercrime (7)
- Phishing (7)
- COVID-19 (5)
- Coronavirus (5)
- Digital Communication (4)
- Business Continuity (3)
- Ransomware (3)
- Vendor Email Compromise (3)
- #cyberinsurance (2)
- Disaster Recovery (2)
- Financial Relief (2)
- ITSupport (2)
- MFA (2)
- Multifactor Authentication (2)
- New York Reopens (2)
- Remote workforce returning to the office (2)
- VEC (2)
- industries (2)
- #Christmas (1)
- #Shopping (1)
- 2FA (1)
- 3CX (1)
- AI (1)
- Artificial Intelligence (1)
- Automation (1)
- BCDR (1)
- Business Model (1)
- Client Experience (1)
- Cloud (1)
- Cloud Services (1)
- Document Drafting (1)
- Due Diligence (1)
- Holidays (1)
- Law Firms (1)
- Legal (1)
- Legal Firm (1)
- Legal IT (1)
- Legal Tech (1)
- Legal Trends (1)
- Microsoft (1)
- Microsoft End of Life (1)
- Non-Disclosure Agreement (1)
- PrintNightmare (1)
- Remote Workers (1)
- Returning to the Office (1)
- Silent Starling (1)
- Smartphone (1)
- Tax Season (1)
- Windows 7 (1)