Tag Archives: proxylogon

Ransomware operators are piling on already hacked Exchange servers

(credit: Aurich Lawson / Ars Technica) Microsoft Exchange servers compromised in a first round of attacks are getting infected for a second time by a ransomware gang that is trying to profit from a rash of exploits that caught organizations around the world flat-footed. The ransomware—known as Black Kingdom, DEMON, and DemonWare—is demanding $10,000 for… Read More »

Exchange servers first compromised by Chinese hackers hit with ransomware

Getty Images reader comments 22 with 20 posters participating, including story author Share this story Now organizations using Microsoft Exchange have a new security headache: never-before seen ransomware that’s being installed on servers that were already infected by state-sponsored hackers in China. Microsoft reported the new family of ransomware deployment late Thursday, saying that it… Read More »