
Ransomware Hackers Built Their Own C2 Framework to Steal Passwords and Kill Security Tools
A newly analyzed server linked to the ransomware group The Gentlemen contained a previously undocumented command-and-control (C2) framework called TukTuk, tools designed to disable endpoint security products, and data believed to have been stolen from two global companies. Threat intelligence researchers identified the server at IP address 65.109.70.162, hosted by Hetzner Online in Finland. The […]
The post Ransomware Hackers Built Their Own C2 Framework to Steal Passwords and Kill Security Tools appeared first on Cyber Security News.