Monday, 24 February 2025
25.5 C
Singapore
28.3 C
Thailand
19.8 C
Indonesia
25.6 C
Philippines

Hackers use developing countries to test new ransomware strains

Explore how cybercriminals trial new ransomware in developing countries before launching attacks in more developed regions.

You may not be the only one testing in sandboxes and deploying honeypots; hackers are engaging in similar practices, particularly in developing regions of the world. According to a recent report by Performanta, cybercriminals are increasingly selecting developing countries as their testing grounds for new malware strains before they target more developed economies.

Hackers strategically choose developing nations. These regions often have lower cybersecurity awareness and weaker defensive measures, making them ideal initial targets. This tactic allows attackers to refine their methods and malware in a less risky environment. Countries in Africa, Latin America, and Asia frequently fall victim first before these cyber threats escalate to regions like Europe and North America.

This approach not only helps cybercriminals test the effectiveness of their malware but also allows them to adjust their tactics based on initial responses before they target more secure, high-stakes environments.

The spread of cheaper malware

Research indicates that this method has been employed with various strains of malware, including the ransomware variant Medusa. Initially observed in countries such as South Africa, Senegal, and Tonga, Medusa subsequently found its way into systems across the US, UK, Canada, Italy, and France. In 2023 alone, Medusa was responsible for approximately 100 reported attacks.

Experts like Nadir Izrael, Chief Technology Officer at cybersecurity firm Armis, have noted that attackers often discuss exploits for newly discovered vulnerabilities. Earlier this year, cybercriminals were seen testing an exploit on a few servers in less developed countries to gauge its reliability. This testing phase allows attackers to refine their strategies in environments where there is less likelihood of immediate, robust countermeasures.

However, not everyone concurs with this perspective. Sherrod DeGrippo, Director of Threat Intelligence Strategy at Microsoft, argued that malware and ransomware variants have become more affordable, enabling hackers in developing countries to initiate their own scaled-down attacks. This affordability factor changes the dynamics of global cybersecurity as it lowers the entry barrier for attackers.

Similarly, Hanah-Marie Darley, Director of Threat Research at Darktrace, suggested that the reduction in the cost of tools like Medusa has led to an increase in attacks in poorer countries. These regions, with their limited cybersecurity budgets and infrastructure, are becoming hotspots for initial malware outbreaks.

As the digital landscape evolves, the strategic deployment of malware in developing countries highlights the complex, global nature of cybersecurity threats. It underscores the need for international cooperation and capacity-building in cybersecurity measures across all nations.

Hot this week

YouTube TV strikes new deal to keep Paramount channels

YouTube TV and Paramount reached a deal to keep CBS, Nickelodeon, and other content on Googleโ€™s pay-TV service, avoiding content removal.

Goldshell launches AE BOX, its first ALEO miner, with a focus on privacy and security

Goldshell has launched AE BOX, its first ALEO miner, offering enhanced privacy and security through zero-knowledge proofing, available from 7 February 2025.

Xiaomi 15 Ultra clears IMDA registration, set to launch in Singapore

Xiaomi 15 Ultra has cleared IMDA registration, indicating a Singapore launch soon after MWC 2025. Find out what this means for buyers.

Nvidia introduces priority access for RTX 5080 and 5090 Founders Edition GPUs

Nvidia introduces Verified Priority Access for RTX 5090 and 5080 FE GPUs, letting gamers apply for an invite to buy one card per person.

Singapore businesses embrace AI to boost efficiency

Singapore businesses and government agencies use AI to improve efficiency, reduce costs, and enhance productivity, as shared at Microsoftโ€™s AI Tour.

Did xAI mislead the public about Grok 3โ€™s benchmarks?

xAI is under scrutiny for allegedly misleading AI benchmark results, with OpenAI employees questioning its claims about Grok 3โ€™s performance.

BT and Equinix expand partnership to enhance global interconnectivity

BT and Equinix expand their partnership to boost interconnectivity for multinational businesses, deploying BTโ€™s Global Fabric NaaS in 40+ Equinix data centres worldwide.

LG unveils new SKS branding for luxury kitchen suite at KBIS 2025

LG rebrands Signature Kitchen Suite to SKS at KBIS 2025, introducing new luxury appliances like a free-zone induction range and an advanced island system.

LG unveils advanced laundry solutions at KBIS 2025

LG unveils its latest heat pump washer and dryer lineup at KBIS 2025, featuring AI-driven efficiency, ventless design, and smart connectivity.

Related Articles