Tech

AWS S3 feature exploited by ransomware hackers to encrypt storage buckets

Share
Share


  • Attackers access storage buckets with exposed AWS keys
  • The files are then encrypted and scheduled for deletion after a week
  • Halycon says it observed at least two victims being attacked this way

Cybercriminals have started exploiting legitimate AWS S3 features to encrypt victim buckets in a unique twist to the old ransomware attack.

Researchers from Halycon recently observed multiple victims, all AWS native software developers, being attacked this way. In the attack, the group, dubbed Codefinger, accessed their victims’ cloud storage buckets through publicly exposed, or otherwise compromised, AWS keys with read and write permissions.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
On-demand Lewis base formation strategy boosts efficiency and stability of perovskite solar cells
Tech

On-demand Lewis base formation strategy boosts efficiency and stability of perovskite solar cells

Effects of the on-demand formation of SE molecules on the crystallization of...

Minisforum’s G1 / G1 Pro is the PS5-inspired gaming mini PC you didn’t expect
Tech

Minisforum’s G1 / G1 Pro is the PS5-inspired gaming mini PC you didn’t expect

Minisforum’s G1 / G1 Pro mini PC takes its design cues from...

Meta fighting Nigerian fines, warns could shut Facebook, Instagram
Tech

Meta fighting Nigerian fines, warns could shut Facebook, Instagram

Meta says it ‘may be forced to effectively shut down the Facebook...

China denies accessing data after TikTok hit with huge EU fine
Tech

China denies accessing data after TikTok hit with huge EU fine

Credit: Unsplash/CC0 Public Domain China on Saturday denied it required companies to...