Microsoft Exchange servers targeted with Cuba ransomware (TechRadar)

TechRadar
Microsoft Exchange servers targeted with Cuba ransomware – Group mainly seems to attack Microsoft Exchange servers in the US and Canada. The UNC2596 ransomware group, also known as Cuba, is abusing vulnerabilities found in Microsoft Exchange to compromise corporate endpoints, harvest data, and ultimately, deploy the COLDDRAW malware. Cybersecurity experts from Mandiant caught on the ransomware groups trail, …

Leave a Reply

Your email address will not be published. Required fields are marked *

Subscribe to our Newsletter