Kaspersky Has Released A New Decryption Tool Against Conti Ransomware Modification.

Kaspersky has released a new decryption tool against Conti Ransomware Modification.

Kaspersky has released a new version of a decryption tool that assists victims of a ransomware modification based on previously leaked Conti source code. Conti is a ransomware gang that emerged in 2019 and has been active in the cybercrime scene since, with its source code being leaked in March 2022 following an internal conflict triggered by geopolitical tensions in Europe. The discovered modification was distributed by an unknown ransomware group and used against companies and government institutions.

In late February 2023, Kaspersky experts uncovered a new section of leaked data posted on forums. After analyzing the data, which included 258 private keys, source code, and precompiled decryptors, Kaspersky released a new version of its decryption tool to help victims of this Conti ransomware modification.

Conti ransomware initially emerged in late 2019 and was highly active throughout 2020, affecting over 13% of all ransomware victims during that period. However, after the source code was leaked a year ago, various criminal groups created different modifications of Conti ransomware and utilized them in their attacks.

The leaked private keys for this malicious software variant were discovered by Kaspersky experts in December 2022. This type of ransomware has been used in numerous attacks against businesses and government institutions.

Among the 257 folders containing the leaked private keys, 14 specify the names of specific companies and government agencies. Assuming each folder represents a victim and the decryptors were created for paying victims, it can be inferred that 14 of the 257 folders belong to victims who paid the attackers.

After analyzing the data, experts released a new version of the decryption tool to assist victims of this Conti ransomware variation. The decryption code and all 258 keys were incorporated into Kaspersky’s RakhniDecryptor 1.40.0.00 tool. Additionally, the decryption tool was added to Kaspersky’s No Ransom website (https://noransom.kaspersky.com).

Fedor Sinitsyn, Chief Malware Analyst at Kaspersky, stated, “Ransomware has remained a significant tool used by cybercriminals for several years in a row. However, as we’ve examined the tactics, techniques, and procedures (TTPs) of different ransomware gangs and found that many operate in similar ways, it becomes easier to prevent these attacks. A decryption tool for a new Conti-based variation is already available on our No Ransom website. Nonetheless, we emphasize that the best strategy is to strengthen defense, stop attackers in the early stages of an attack, prevent ransomware distribution, and minimize the consequences of an attack.”

To protect yourself and your business from ransomware attacks, Kaspersky experts offer the following recommendations:

  1. Avoid opening remote desktop services (such as RDP) to the public internet unless absolutely necessary, and always use strong passwords for them.
  2. Immediately apply available patches for commercial VPN solutions that provide remote access for remote workers and serve as gateways in your network.
  3. Focus your defense strategy on detecting lateral movements and data leakage to the internet. Pay particular attention to outbound traffic to identify connections made by cybercriminals.
  4. Regularly back up your data, ensuring quick access in case of an emergency.
  5. Use solutions like Kaspersky Endpoint Detection and Response Expert and Kaspersky Managed Detection and Response to detect and stop attacks in their early stages before threat actors achieve their ultimate goals.
  6. Stay informed about real TTPs (Tactics, Techniques, and Procedures) used by threat actors by using the latest Threat Intelligence information. Kaspersky Threat Intelligence Portal provides a single access point to 25 years of cyberattack data and insights collected by their team. Kaspersky offers free access to independent, continuously updated, and globally sourced information to help businesses defend against ongoing cyberattacks and threats.

About Kaspersky:

Kaspersky is a global cybersecurity and digital privacy company established in 1997. Kaspersky’s deep threat intelligence and security expertise continuously evolve to provide innovative solutions and services for protecting businesses, critical infrastructure, governments, and consumers worldwide. The company’s comprehensive security portfolio includes leading-edge endpoint protection, specialized security products and services, and Cyber Immunity solutions to combat advanced and emerging digital threats. Kaspersky technology protects over 400 million users and helps more than 220,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.


Evolution Of Art Episode 30 – Ömer Koçağ, Günsu Saraçoğlu – Evrim Art, Mikado Communication
Evolution of Art Episode 30 – Ömer Koçağ, Günsu Saraçoğlu – Evrim Art, Mikado Communication
Kenan Doğulu Storm At Harbiye Open Air A Night Filled With Music And Dance
Kenan Doğulu Storm at Harbiye Open-Air: A Night Filled with Music and Dance
Mastering Music Video And Commercial Makeup Tips From Makeup Guru Aybüke
Mastering Music Video and Commercial Makeup: Tips from Makeup Guru Aybüke
Zeynep Öztürk The Harp Has Started To Be Loved In Turkey, We Can't Keep Up With The Demand
Zeynep Öztürk: “The Harp Has Started to Be Loved in Turkey, We Can’t Keep Up with the Demand”
With Eylül Aşkın… Vienna
With Eylül Aşkın… Vienna
The Evolution Of Art, Episode 29 – Mehmet Babat, Günsu Saraçoğlu – Evrim Art, Mikado Communication
The Evolution of Art, Episode 29 – Mehmet Babat, Günsu Saraçoğlu – Evrim Art, Mikado Communication
20 Prestigious Projects By Zeray Gyo Included In The Big Summer Offer Campaign!
20 Prestigious Projects by Zeray GYO Included in the Big Summer Offer Campaign!
The Increase In Education Expenses The Impact Of Inflation And Exchange Rate Fluctuations
The Increase in Education Expenses: The Impact of Inflation and Exchange Rate Fluctuations
Baby Step Martial Arts On Joint And Cartilage Health Tips From Çetin Cin
Baby Step Martial Arts on Joint and Cartilage Health: Tips from Çetin Cin
Art Meets Nature At The Kenan Yavuz Ethnography Museum
Art Meets Nature at the Kenan Yavuz Ethnography Museum
Mary Tsevik Simyonidis You Don't Know Istanbul Cuisine, But You're Teaching Italian Spaghetti With Eylül Aşkın...
Mary Tsevik Simyonidis: “You don’t know Istanbul cuisine, but you’re teaching Italian spaghetti” with Eylül Aşkın…
Ai, Clc 360, Mim Chi 360, Crm Inst. For  Aviation Sector
AI, CLC 360, MIM CHI 360, CRM Inst. For  Aviation Sector
The Evolution Of Art, Episode 28 – Gözde Atlas, Eylül Aşkın – Evolution Art, Mikado Communications
The Evolution of Art, Episode 28 – Gözde Atlas, Günsu Saraçoğlu – Evolution Art, Mikado Communications
The Purest Solutions' 4th Anniversary Event Eco Friendly Cosmetic Products
The Purest Solutions’ 4th Anniversary Event: Eco-Friendly Cosmetic Products
A Breeze Of Art At Mavi Arya An Unforgettable Evening With Zuhal Olcay And Güvenç Dağüstün
A Breeze of Art at Mavi Arya: An Unforgettable Evening with Zuhal Olcay and Güvenç Dağüstün
Melike Şahin Energized Thousands Of Istanbulites At The Istanbul Festival
“Melike Şahin Energized Thousands of Istanbulites at the Istanbul Festival”
Stories And Games For Children At The Culture Road Festival In Erzurum
Stories and Games for Children at the Culture Road Festival in Erzurum
Fantasİstanbul 2024 Film Selection By Asuman Dabak And Alex Proyas
Fernando Trueba’s Latest Animation ‘They Shot The Piano Player’ to Premiere in Turkey at Fantasİstanbul
Prof. Dr. Engineer Levon Çapan The Story Of The Blue Sheet, Itu, Paris, And Some Harsh Realities Özge Çubuk And Değerli Hayatlar
Prof. Dr. Engineer Levon Çapan: The Story of the Blue Sheet, ITU, Paris, and Some Harsh Realities – Özge Çubuk and Değerli Hayatlar
Get To Know Fatih Çölgeçen's New Song Yangın Yeri
Get to Know Fatih Çölgeçen’s New Song “Yangın Yeri”
With Eylül Aşkın… Eylül Aşkın Ile... Bari City Tour
With Eylül Aşkın… Eylül Aşkın ile… Bari City Tour
A Notable Name In The Music World Efza's Song Kendileri Is Released
A Notable Name in the Music World: Efza’s Song “Kendileri” is Released
Sanatın Evrim’i 27. Bölüm – İclal Erentürk Güçsav, Günsu Saraçoğlu – Evrim Sanat, Mikado İletişim 1
The Evolution of Art, Episode 27 – İclal Erentürk Güçsav, Eylül Aşkın – Evrim Sanat, Mikado Communication
The Stars Of Cocktails Gather At Istanbul Cocktail Festival 2024
The Stars of Cocktails Gather at Istanbul Cocktail Festival 2024
The Tourism World Gathers In Istanbul Uzakrota Global 2024 Summit Details
The Tourism World Gathers in Istanbul: Uzakrota Global 2024 Summit Details
Türkiye News Portal Logo
Turhapo Logo
Türkiye Haber Portalı Logo

INDEX URL LIST