The fog ransomware attacks use the employee monitoring tool to enter corporate networks


  • The fog ransomware was seen using Syteca, a legitimate employee surveillance tool, to record keys and enter passwords
  • He also used open source tools for deleting the payload and exfiltration of files
  • The attack was “atypical”, say the researchers

The fog ransomware operators have expanded their arsenal to include legitimate and open source tools. It is most likely to avoid being detected before deploying the cryptor.

Symantec safety researchers were recently brought to investigate a fog ransomware infection and determined that the pirates used Syteca, a legitimate surveillance tool during the attack.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top