A hacker called the company that the ransomware gang claimed to be hacking into, using a new trick to collect the ransom.
See also: Over 40 countries to sign to stop paying ransoms to ransomware gangs

The phone call between the hacker, who claims to represent the DragonForce, and the employee of the victim company was posted by the ransomware gang on its dark web site in an apparent attempt to pressure the company into paying the ransom. However, in reality, the call recording shows a somewhat humorous and failed attempt to blackmail and intimidate the company's employees.
The recording also shows how ransomware gangs are always looking for different ways to intimidate the companies they hack.
On the call, the hacker asks to speak to the “management team.” However, two different employees put him on hold until Beth, from HR, answered the call.
See also: Hive ransomware: 10 million reward for information on its members
After a minute of the two of them struggling to hear each other, Beth told the hacker that she was not familiar with the data breach he claimed. When the hacker tried to explain what was going on, Beth interrupted him by asking, “Why did you choose to attack us?”
To this, the hacker replied that he was just trying to help her. He then explained to Beth that the company she works for only has eight hours to negotiate before the ransomware gang publishes the stolen data .

The hacker then threatened Beth, saying they would start calling customers, employees, and partners. He also added that they have already contacted the media and provided a recording of a previous call with one of her colleagues, which is also on the gang's dark web site.
See also: Carolina Foods company fell victim to ransomware attack
What are the most common ransomware techniques?
One of the most common techniques used by ransomware groups is phishing. Attackers send malicious emails containing infected attachments or links, trying to trick the user into opening the attachment or clicking on the link. Another common technique is exploiting software vulnerabilities. Attackers use special tools to detect and exploit vulnerabilities in the user's software, allowing the ransomware to run. Also, the 'drive-by download' technique is very widespread. Attackers exploit vulnerabilities in websites to automatically download ransomware to the computer without their permission.
Source: techcrunch
☁️ Keep safe copies with Proton Drive
Encrypted cloud storage from Proton — protect your files from ransomware, corruption, and data loss with end-to-end encryption.
- ✔ End-to-end encrypted files & backups
- ✔ Version history — recover files after ransomware
- ✔ Free space — sync across all devices
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
