Chinese-Linked Group Deploys New StormEncryptor Ransomware Leveraging N-central Vulnerability
Microsoft has identified Storm-1175, a financially motivated Chinese-linked threat group, deploying a new ransomware variant called StormEncryptor.…
If you use N-central, immediately verify your instance is updated to the latest version patching the exploited vulnerability. Review access logs and process behavior on remotely managed systems for anomalies. Monitor for .encrypted file extensions as a compromise indicator.