April 3, 2023, 11:05 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news


Key Findings



  • Check Point Research (CPR) and Check Point Incident Response Team (CPIRT) encountered a previously unnamed ransomware strain, we dubbed Rorschach, deployed against a US-based company.

  • Rorschach ransomware appears to be unique, sharing no overlaps that could easily attribute it to any known ransomware strain. In addition, it does not bear any kind of branding which is a common practice among ransomware groups.

  • The ransomware is partly autonomous, carrying out tasks that are usually manually performed during enterprise-wide ransomware …

addition autonomous bear branding check check point deployment domain enterprise fast findings gpo group policy incident incident response incident response team key point policy practice ransomware ransomware groups research response rorschach rorschach ransomware sharing team

Network Security Administrator

@ Peraton | United States

IT Security Engineer 2

@ Oracle | BENGALURU, KARNATAKA, India

Sr Cybersecurity Forensics Specialist

@ Health Care Service Corporation | Chicago (200 E. Randolph Street)

Security Engineer

@ Apple | Hyderabad, Telangana, India

Cyber GRC & Awareness Lead

@ Origin Energy | Adelaide, SA, AU, 5000

Senior Security Analyst

@ Prenuvo | Vancouver, British Columbia, Canada