Kyber Ransomware Analysis: VMware ESXi and Windows File Servers

Our latest Rapid7 Labs analysis undertakes a deep dive into Kyber #ransomware where we evaluated two Kyber ransomware payloads deployed in the same environment following an IR engagement. One targeting VMware ESXi infrastructure and the other Windows file servers providing us the opportunity to analyze both variants side by side. The results were interesting in that they differ in programming language they are written, crypto, and features. More details here: https://lnkd.in/e62bs7-z H/T Anna S. #malware #infosec

To view or add a comment, sign in

Explore content categories