Category: SophosLabs Uncut

Providing Solutions

Conti and Karma actors attack healthcare provider at same time through ProxyShell exploits

An unpatched Microsoft Exchange Server let both ransomware actors in; Karma just stole data, while Conti encrypted.

Dridex bots deliver Entropy ransomware in recent attacks

Some code used in the ransomware bear a resemblance to code used in Dridex malware, hinting at a common origin

Microsoft Fixes 52 Vulnerabilities in February, 2022 Patches

Active Directory, Visual Studio, and Microsoft Dynamics & Power BI business packages also got updates

First Patch Tuesday of 2022 repairs 102 bugs

Critical bugs fixed in Exchange, Office, and graphics subsystems–plus a few unexpected products