Microsoft Exchange servers targeted with Cuba ransomware



    The UNC2596 ransomware group, also known as Cuba, is abusing vulnerabilities found in Microsoft Exchange to compromise corporate endpoints, harvest data, and ultimately, deploy the COLDDRAW malware.

    Cybersecurity experts from Mandiant caught on the ransomware group’s trail, saying it mostly hunts down companies in the United States and Canada. 



    Source link

    Previous articleThe Best Samsung Galaxy S22 Case of 2022
    Next articleFlurry Finance heist nets crypto thieves $295k