THE FBI has issued a warning after investigators discovered that hackers were sending USBs infected with ransomware to businesses across the US.  

The malicious packages, often disguised as official goods, have been in circulation for several months and reportedly have the potential to “compromise a network.”

Hackers have been sending infected USBs to businesses in the 'transportation and defense industries'

1

Hackers have been sending infected USBs to businesses in the ‘transportation and defense industries’

The FBI now believe that Russian hackers FIN7, who are behind the Darkside and BlackMatter ransomware operations, are responsible for the operation.

According to the US agency, the group’s packages were being sent via the United States Postal Service or United Parcel Service – appearing as official companies.

The hackers usually prented to be deom the te US Department of Health & Human Services or from Amazon as a means to trick their ransomware targets.

It prompted the FBI to issue a warning to businesses that these packages were certified as fake and dangerous,

Their statement read: “Since August 2021, the FBI has received reports of several packages containing these USB devices, sent to US businesses in the transportation, insurance, and defense industries,”

“The packages were sent using the United States Postal Service and United Parcel Service.

Most read in Tech

“There are two variations of packages—those imitating HHS are often accompanied by letters referencing COVID-19 guidelines enclosed with a USB; and those imitating Amazon arrived in a decorative gift box containing a fraudulent thank you letter, counterfeit gift card, and a USB.”

The FBI also confirmed that all packages contained LilyGO-branded USBs which, if plugged into device, could execute a ‘BadUSB’ attack and infect it with the dangerous malware software.

The Record added that, in most cases investigated by the US agency, the group would obtain administrative access and then “move laterally to other local systems.”

The latest warning comes after similar Russian malware infiltrated a huge number of companies across the US last July.

The breach, which is the largest ransomware attack on record, reportedly hit the IT systems of up to one million companies across the globe over a 24-hour period, by targeting the systems of US-based software firm Kaseya.

Two days later, Russian hackers REvil demanded a $70 million payment in Bitcoin for a decryption key. 

Cyber security company show how hackers could use your PRINTER to access your Gmail in new cyber security threat

This post first appeared on Thesun.co.uk

Leave a Reply

Your email address will not be published. Required fields are marked *

You May Also Like

If Covid-19 Did Start With a Lab Leak, Would We Ever Know?

“We find ourselves ten months into one of the most catastrophic global…

Congressman Darin LaHood Says FBI Targeted Him With Unlawful ‘Backdoor’ Searches

Jeramie Scott, senior counsel at the Electronic Privacy Information Center and director…

Beijing Calls Time on Big Tech’s Shopping Spree

China’s antimonopoly crackdown doesn’t just mean higher scrutiny of technology giants’ existing…

I’m obsessed with FIFA footie game and have every copy released over the past 30 years

A FIFA-mad dad has every copy of the popular footie computer game…