Locky now using Embedded RSA Key instead of contacting Command & Control Servers

  • 7 September 2016
  • 0 replies
  • 117 views

Userlevel 7
Badge +21
According to security researcher Timothy Davies, a new version of the Locky Ransomware, aka Zepto, has been circulating since around the September 5th 2016 that includes an embedded RSA key. This key allows Locky to encrypt a victim's computer without having to contact their Command & Control server. As many system administrators block Command & Control servers on their firewalls, by using an embedded RSA key, Locky can encrypt a computer regardless of what has been blocked at the edge.
 http://www.bleepstatic.com/images/news/ransomware/locky/embedded-rsa/locky-embedded-rsa-key.pngEmbedded RSA Key 
Full Article

0 replies

Be the first to reply!

Reply