SynAck ransomware group releases decryption keys as they rebrand to El_Cometa

0
149

Jonathan Greig

By

Jonathan Greig

| August 13, 2021 — 20:21 GMT (21:21 BST)

| Topic: Security

The SynAck ransomware gang has released decryption keys for victims that were infected between July 2017 and 2021, according to data obtained by The Record. 

SynAck is in the process of rebranding itself as the El_Cometa ransomware gang and a member of the old group gave the keys to The Record. 

Emsisoft’s Michael Gillespie confirmed the veracity of the decryption keys and said they are working on their own decryption utility that they believe will be “safer and easier to use” because there are concerns that SynAck victims may damage their files further using the provided keys. 

Ransomware expert Allan Liska told ZDNet that the SynAck ransomware group started right before Ransomware-as-a-service began to take off in 2018. 

“So they never outsourced their ransomware activities. While they continued attacks, there weren’t nearly as many as groups like Conti or REvil were able to conduct, so they got lost in the shuffle,” Liska said. “They also didn’t hit any really big targets.”

Related Topics:

Data Management

Security TV

CXO

Data Centers

Jonathan Greig

By

Jonathan Greig

| August 13, 2021 — 20:21 GMT (21:21 BST)

| Topic: Security