China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw
China-linked threat actor Storm-1175 deployed a new ransomware strain, StormEncryptor, likely exploiting an N-central flaw, marking a shift from its previous use of Medusa ransomware.
Microsoft disclosed that Storm-1175, a financially motivated threat actor linked to China, deployed a new ransomware strain called StormEncryptor, likely exploiting an N-central flaw. Written in C++, it appends the .encrypted extension. This marks a shift from the group's prior use of Medusa ransomware, according to Microsoft's Threat Intelligence Team.