REvil or Sodinokibi ransomware operation is apparently resumes again. Its operation was shutdown by law enforcement agencies in October 2021. Their TOR website is resumed and a new sample is captured in the wild.
Black Basta ransomware encrypts user data using a combination of AES + RSA algorithms and then demands its victims to contact them via their tor site for ransom negotiations.
BlackGuard is a new Stealer that is available for sale in hacking forums. It is offered as malware-as-a-service with a lifetime price of $700 and a monthly price of $200.
AcidRain is an ELF MIPS malware designed to wipe modems and routers. It is designed to brute-force device file names and wipe every file it can find, making it easy to redeploy in future attacks.
JSSLoader is a Remote Access Trojan (RAT) is spreading through Microsoft Excel's XLL add-in file. An XLL file is a type of dynamic link library (DLL) file that can only be opened by Excel.