May 18, 2023, 4:11 p.m. |

FortiGuard Labs | FortiGuard Center - Threat Signal Report fortiguard.fortinet.com

What is BianLian Ransomware?



BianLian is a ransomware threat actor whose modus operandi is to add victims to its own data leak site in June 2022. BianLian also refers to the file encryptor (ransomware) used by the threat actor. Victims reportedly include critical infrastructure organizations in the U.S. and Australia.

FortiGuard Labs previously reported BianLian in a Ransomware Roundup blog published on September 2nd, 2022.









What is the Attack?



The BianLian ransom threat actor leverages stolen and leaked Remote Desktop …

actor australia bianlian bianlian ransomware critical critical infrastructure critical infrastructure organizations data data leak data leak site file infrastructure june labs leak leak site organizations own ransomware stopransomware threat threat actor what is

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Security Operations Manager-West Coast

@ The Walt Disney Company | USA - CA - 2500 Broadway Street

Vulnerability Analyst - Remote (WFH)

@ Cognitive Medical Systems | Phoenix, AZ, US | Oak Ridge, TN, US | Austin, TX, US | Oregon, US | Austin, TX, US

Senior Mainframe Security Administrator

@ Danske Bank | Copenhagen V, Denmark