https://securityaffairs.com/187279/security/osiris-ransomware-emerges-leveraging-byovd-technique-to-kill-security-tools.html
#securityaffairs #hacking
📰 New 'Osiris' Ransomware Borrows TTPs from Medusa and Inc Gangs, Uses Signed Driver to Kill AV
New Osiris ransomware borrows TTPs from Medusa & Inc gangs. 🐍 It uses a custom-signed driver ('Poortry') to kill EDR/AV before encrypting files. Also uses Rclone for data theft. #Ransomware #Osiris #BYOVD #ThreatIntel

The new Osiris ransomware strain shows links to Medusa and Inc groups, using a custom-signed malicious driver (Poortry/Abyssworker) to disable security software in a sophisticated BYOVD attack.

[OSIRIS] - Ransomware Victim: American Vanguard - https://www.redpacketsecurity.com/osiris-ransomware-victim-american-vanguard/
#osiris #dark_web #data_breach #OSINT #ransomware #threatintel #tor



[OSIRIS] - Ransomware Victim: The Araneta Group - https://www.redpacketsecurity.com/osiris-ransomware-victim-the-araneta-group/
#osiris #dark_web #data_breach #OSINT #ransomware #threatintel #tor