CRPx0 hacking service for dummies claims victim count more than quintupled

https://image.theregister.com/5293114.jpg?imageId=5293114&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683

CRPx0, a cybercrime crew that has rapidly evolved from a scam service to a ClickFix-delivered ransomware and crypto-theft business over the summer, claims its victim count jumped from fewer than 10 in June to 48 organizations on its clear-web leak site at the time of publication.

Keep in mind: criminals aren’t always the most trustworthy bunch, so take their claims with a healthy dose of salt.

Still, the ransomware biz’s expanding operations, unique payload, and white-label hacking service make it one to watch, and a few recent analyses provide tips for defenders to keep the crooks out of their IT environments.

Rakesh Krishnan, a threat-intel analyst who writes about cybercrime investigations on TheRavenFile blog, was one of the first researchers to publish details about CRPx0 at the beginning of the month, including previously unreleased malware samples.

The operators offer a hacking service, providing “complete database extraction” from victim organizations...

Copyright of this story solely belongs to theregister.com. To see the full text click HERE

Read more