‘Zombie’ Ryuk ransomware group returns from the grave | SC Media

‘Zombie’ Ryuk ransomware group returns from the grave | SC Media

A resurgence of the so-called UNC 1878 hacking group has emerged, most recently linked to a string of ransomware attacks on hospitals. (Source: FBI)

The so-called UNC 1878 hacking group, which is reportedly behind a string of ransomware attacks on hospitals, seems to have risen from the dead, again using its malware family of choice, Ryuk.


Reuters reported Wednesday that the FBI is investigating a wave of ransomware attacks currently underway against hospitals across the U.S. and other countries that are tied to UNC 1878. This news came the same day as research from Mandiant, stating one out of every five ransomware attacks the company responds to are from Ryuk malware family, while one out of every five of those attacks was carried out by UNC 1878.


It also comes after researchers at Check Point said earlier this month that an average of 20 organizations have been attacked with Ryuk ransomware every week since July, and other threat firms like Kaspersky have estimated that a business is attacked by ransomware every 40 seconds. UNC 1878’s modus operandi plays into both of those trends, le ..

Support the originator by clicking the read the rest link below.