An in-depth look on the Crytox ransomware family. [Research Saturday]

Published: Nov. 12, 2022, 8 a.m.

b'Deepen Desai from Zscaler sits down with Dave to talk about the Crytox ransomware family. First observed in 2020, Crytox is a ransomware family consisting of several stages of encrypted code that has fallen under the radar compared to other ransomware families. While other groups normally use double extortion attacks where data is both encrypted and held for\\xa0ransom, Crytox does not perform this way.\\nThe research says "The modus operandi of the group is to encrypt files on connected drives along with network drives, drop the\\xa0uTox messenger application\\xa0and then display a ransom note to the victim." It also shares how you may be compromised with this ransomware and goes through each stage in depth.\\nThe research can be found here:\\nTechnical Analysis of Crytox Ransomware'