TA505, a well-known cybercrime group, is using signed MSI files and other techniques to install the ServHelper RAT on victims' systems.
A whole of government approach, along with collaboration from the private sector, is key to disrupting the ransomware ecosystem.
A new National Security Memorandum from President Biden sets performance goals for critical infrastructure security and creates a new CI security initiative.
While law enforcement and security researchers have made progress against some ransomware groups, Europol and other law enforcement officials say the threat will remain for some time.
The U.S. has indicted four Chinese men it alleges were part of APT40 and conducted cyberespionage on behalf of the Chinese government.