AcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronis
Acronis
January 09, 2025

SharpRhino: An old, new threat

SharpRhino is delivered as legitimate software and grants remote access to the victim's machine. Read our full analysis to see how attackers use it to propagate other malware.

August 08, 2024

Acronis Infrastructure Security Scanner

In today’s rapidly evolving digital landscape, regularly scanning a company’s external perimeter for vulnerabilities іs not only a proactive measure, but also an essential defense strategy.

July 01, 2024

Hunters International: New ransomware based on Hive source code

Hunters International ransomware was first spotted in October 2023. While it shares many similarities with Hive ransomware, it is not a rebrand. But like Hive, Hunters International works as ransomware as a service (RaaS) and besides encryption, it also exfiltrates victim data.

May 07, 2024

Using LNK files in cyberattacks

In our daily work, we are constantly facing various attacks that can be directed at different organizations. One of these cases was the reason for an in-depth study of LNK files.

April 01, 2024

Frea ransomware: A new sibling in the Chaos family

Detected at the end of 2024, Frea ransomware is a new variant in the Chaos ransomware family. Our latest malware analysis explores Frea in depth, with technical details on the execution and the encryption and post-encryption process.

February 27, 2024

Trigona: A ransomware wiper

Trigona ransomware was first observed in June 2022. It has Windows and Linux versions and operates as ransomware as a service.