{"id":80792,"date":"2024-06-10T05:11:51","date_gmt":"2024-06-10T09:11:51","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=80792"},"modified":"2024-06-10T05:11:53","modified_gmt":"2024-06-10T09:11:53","slug":"singapore-police-warns-businesses-of-ransomware-risk","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/singapore-police-warns-businesses-of-ransomware-risk\/","title":{"rendered":"Singapore Police Warns Businesses of Ransomware Risk"},"content":{"rendered":"\n<p>In light of the Akira ransomware in Singapore, the police have advised businesses against <a href=\"https:\/\/coinscreed.com\/staging\/how-to-recover-your-stolen-bitcoin-ethereum-or-other-cryptocurrency.html\">paying ransom in case of a compromise<\/a> and asked them to report the incident immediately.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-full\"><img fetchpriority=\"high\" decoding=\"async\" width=\"980\" height=\"706\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42.png\" alt=\"Singapore Police Warns Businesses of Ransomware Risk\" class=\"wp-image-80800\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42.png 980w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42-300x216.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42-768x553.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42-120x86.png 120w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42-750x540.png 750w\" sizes=\"(max-width: 980px) 100vw, 980px\" \/><figcaption class=\"wp-element-caption\">Singapore Police Warns Businesses of Ransomware Risk<\/figcaption><\/figure>\n\n\n\n<p>The Akira ransomware variant is rising, prompting Singaporean authorities to jointly advise local enterprises.<\/p>\n\n\n\n<p>Akira, the ransomware that inflicted $42 million in losses on more than 250 organizations in North America, Europe, and Australia within a year, is currently focusing on businesses in Singapore.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">It highlights the observed Tactics, Techniques and Procedures (TTPs) employed by Akira threat group to compromise their victims\u2019 networks and provides some recommended measures for organisations to mitigate the threat posed.<\/p>&mdash; CSA (@CSAsingapore) <a href=\"https:\/\/twitter.com\/CSAsingapore\/status\/1799304478434472418?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">June 8, 2024<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>After receiving numerous complaints from victims of the cyberattack, the Cyber Security Agency of Singapore (CSA), the Singapore Police Force (SPF), and the Personal Data Protection Commission (PDPC) have issued an alert.<\/p>\n\n\n\n<p>The primary targets of the Akira ransomware are as follows:<\/p>\n\n\n\n<p>According to prior investigations by the United States <a href=\"https:\/\/coinscreed.com\/staging\/cia-to-build-chatgpt-style-ai-bot-for-investigations.html\">Federal Bureau of Investigation<\/a> (FBI), Akira ransomware has been targeting enterprises and critical infrastructure entities.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"592\" height=\"307\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-40.png\" alt=\"Akira\u2019s ransomware message to victims after successful hijacking. Source: Singapore Police\" class=\"wp-image-80798\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-40.png 592w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-40-300x156.png 300w\" sizes=\"(max-width: 592px) 100vw, 592px\" \/><figcaption class=\"wp-element-caption\"><em>Akira\u2019s ransomware message was sent to victims after a successful hijacking. Source: Singapore Police<\/em><\/figcaption><\/figure>\n\n\n\n<p>Singaporean authorities provided strategies for detecting, preventing, and neutralizing Akira attacks. It is recommended that businesses that have been compromised refrain from paying the assailants' ransom.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Do not pay ransom<\/h2>\n\n\n\n<p>To regain control of their internal data and computer systems, Akira members request payments in cryptocurrencies, such as Bitcoin. Nevertheless, Singaporean authorities have asked businesses to refrain from processing payments.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><em>\u201cIf your organization\u2019s systems have been compromised with ransomware, we do not recommend paying the ransom and advise you to report the incident immediately to the authorities. Paying the ransom does not guarantee that the data will be decrypted or that threat actors will not publish your data.\u201d<\/em><\/p>\n<\/blockquote>\n\n\n\n<p>Furthermore, malicious entities may attempt to launch an additional attack to secure additional ransom. The FBI discovered that Akira does not communicate with the victims and anticipates that they will contact her.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"942\" height=\"283\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-41.png\" alt=\"Cybersecurity best practices against ransomware attacks. Source: cisa.gov\" class=\"wp-image-80799\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-41.png 942w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-41-300x90.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-41-768x231.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-41-750x225.png 750w\" sizes=\"(max-width: 942px) 100vw, 942px\" \/><figcaption class=\"wp-element-caption\">Cybersecurity best practices against ransomware attacks. Source: <a href=\"https:\/\/www.cisa.gov\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">cisa.gov<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/figcaption><\/figure>\n\n\n\n<p>The recommended threat mitigation strategies are implementing a recovery plan and multifactor authentication (MFA), restricting network traffic, disabling unused ports and hyperlinks, and implementing system-wide encryption.<\/p>\n\n\n\n<p>Kaspersky, a cybersecurity firm, recently discovered that North Korean hackers employed Durian malware to target South Korean crypto businesses.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">Our latest APT trends for Q1, 2024 if now live and includes a look at some of the more interesting APT activities revealed during Q1, including Careto APT reappearance, hacktivist activity, and much more.<br><br>Full report \u21d2 <a href=\"https:\/\/t.co\/yTe8mxePF1\" target=\"_blank\">https:\/\/t.co\/yTe8mxePF1<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> <a href=\"https:\/\/t.co\/37N8ZGliZA\" target=\"_blank\">pic.twitter.com\/37N8ZGliZA<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/p>&mdash; Kaspersky (@kaspersky) <a href=\"https:\/\/twitter.com\/kaspersky\/status\/1788614943018827969?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">May 9, 2024<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>&#8220;Durian has a comprehensive backdoor functionality that allows for the execution of commands, the downloading of additional files, and the exfiltration of files,&#8221; Kaspersky explained.<\/p>\n\n\n\n<p>Furthermore, Kaspersky observed that Andariel, a sub-group within the Lazarus Group, also employed LazyLoad. This North Korean hacking consortium implies a &#8220;tenuous&#8221; connection between Kimsuky and the more notorious hacking group.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In light of the Akira ransomware in Singapore, the police have advised businesses against paying ransom in case of a compromise and asked them to report the incident immediately. The Akira ransomware variant is rising, prompting Singaporean authorities to jointly advise local enterprises. Akira, the ransomware that inflicted $42 million in losses on more than [&hellip;]<\/p>\n","protected":false},"author":12,"featured_media":80800,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[21],"tags":[19904,1436,931],"class_list":["post-80792","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-akira-ransomeware","tag-police","tag-singapore"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/image-42.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/80792","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=80792"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/80792\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/80800"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=80792"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=80792"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=80792"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}