8base (Chaos) Ransomware: Analysis of a File-Encrypting Malware Variant
By
Tomas Meskauskas
Sesame, salt, and substance. A flagship bake.
Summary
The 8base ransomware, based on the Chaos ransomware family, encrypts files on infected systems and appends a ".8base" extension to them. It was discovered by researchers analyzing file submissions on VirusTotal. Like other ransomware, it encrypts data and demands ransom payments for decryption.
Key quotes
· 5 pulledOur researchers found the 8base ransomware while investigating file submissions to the VirusTotal site.
This program is based on the Chaos ransomware.
Malicious software of this kind encrypts data and demands ransoms for its decryption.
On our testing system, 8base (Chaos) ransomware encrypted files and altered their names.
Original filenames had a ".8base" extension added to them, i.e., a file titled "1.jpg" became "1.jpg.8base"
You might also wanna read
Drivebase: Open-Source Unified File Manager with End-to-End Encryption for Multiple Cloud Storage Providers
Drivebase is an open-source, cloud-agnostic file management platform that allows users to organize, upload, share, and collaborate on files
Technical Analysis of Non-Recursive Zip Bomb Construction Using File Overlapping
This technical article by David Fifield details the construction of a non-recursive zip bomb that achieves extremely high compression ratios
AroCrypt: Open-Source Tool for Encrypting and Hiding Files Inside Images Using AES and Steganography
AroCrypt is a cross-platform, open-source tool that encrypts files using AES encryption and hides them inside images using steganography tec
AroCrypt: Open-Source Tool for AES Encryption and Image Steganography
AroCrypt is a cross-platform, open-source tool that encrypts files using AES encryption and hides them inside images using steganography tec
CPUID Website Breach Redirected Software Downloads to Malware
The CPUID website was compromised in a six-hour breach where attackers hijacked backend systems to replace legitimate software downloads (li
BorgBackup: Deduplicating Archiver with Compression and Encryption
BorgBackup (short: Borg) is a deduplicating archiver that offers space efficiency through compression and encryption.
