MOXFIVE Threat Actor Spotlight - Fog Ransomware

Every month, we take a look at a current ransomware threat actor. If you would like to receive this via email each month, click below to subscribe to the MOXFIVE mailing list.

Subscribe

Fog Ransomware

MOXFIVE recently observed a new ransomware variant known as Fog Ransomware. Given our experience and recent public reports with this new threat, here is what we know so far.

Key Highlights:

MOXFIVE Mitigation Recommendations:

Fortunately, most clients impacted with this ransomware variant that we have worked with had immutable cloud-based backups that enabled us to expedite the recovery process. The threat actor(s) were unable to delete these backups, which enabled restoration of systems without a ransom payment. In addition, restoring from backups can lead to a significantly faster recovery time.

If you would like to know more or need assistance with incident response efforts, please contact us at 833-568-6695 or email our team at incident@moxfive.com.