Skip to content

New Charon Ransomware Threatens Enterprises, Crypto24 Uses Stealth Tactics

Charon's dangerous APT-inspired tactics have enterprises on alert. Meanwhile, Crypto24's stealthy blend of legitimate tools and custom malware is proving challenging to detect.

In this picture we can see a blog with an image, words and numbers.
In this picture we can see a blog with an image, words and numbers.

New Charon Ransomware Threatens Enterprises, Crypto24 Uses Stealth Tactics

A new ransomware, Charon, is causing concern among enterprises. It employs tactics from the Earth Baxia APT. Meanwhile, the Crypto24 group is using a blend of legitimate tools and custom malware for stealth attacks. The Security Affairs Malware newsletter, authored by Pierluigi Paganini and the anonymous MalwareTech, covers these threats and more.

Charon, the latest ransomware threat, is making waves in the cybersecurity world. It borrows techniques from the Earth Baxia Advanced Persistent Threat (APT) group, making it particularly dangerous. The Crypto24 ransomware group, on the other hand, is using a blend of legitimate tools and custom malware to fly under the radar.

The Security Affairs Malware newsletter, a go-to resource for cybersecurity professionals, has been delving into these threats. Recent issues include an article titled 'From Drone Strike to File Recovery: Outsmarting a Nation State'. The newsletter also covers the Blue Locker ransomware, which is targeting the oil and gas sector in Pakistan.

In other news, the XZ Utils backdoor remains a persistent risk in Docker images. The author of the Malware Newsletter, the anonymous cybersecurity researcher known as MalwareTech, has been instrumental in bringing these threats to light. The newsletter also analyzes the SoupDealer stealth Java loader used in phishing campaigns targeting Türkiye, and the evolving malware arsenal of the Interlock Group. A new Android malware, PhantomCard, is also emerging in Brazil, using NFC technology to infect devices.

A recent malvertising campaign has led to the discovery of PS1Bot, a multi-stage malware framework. This underscores the ever-evolving nature of cyber threats and the importance of staying informed.

The cyber threat landscape continues to evolve, with new ransomwares like Charon and stealth attacks by groups like Crypto24. The Security Affairs Malware newsletter, led by Pierluigi Paganini and MalwareTech, remains a crucial resource for understanding and mitigating these threats. As cybercriminals become more sophisticated, so too must our malware protection.

Read also:

Latest