Highly Targeted Zeppelin Attacks Computer Ransomware Healthcare Firms Cybers Guards
Called “Zeppelin,” the malware is the latest addition to the Delphi-based family of Ransomware-as – a-Service (RaaS) Vega (VegaLocker), which also includes versions such as Jamper, Storm, Buran, and more. Vega was initially observed targeting Russian users in early 2019. In contrast to the large-scale Vega campaign, the Zeppelin attacks have been aimed at aborting the infection process if the machine is in Russia or former USSR countries. The first Zeppelin samples have time stamps to begin compiling on November 6, 2019 and demonstrate that it can be used in an EXE, DLL, or even bundled in a PowerShell loader....