MITB Banner

Dharma Ransomware’s Source Code On Sale

Share

ransomware

Dharma, a significant ransomware strain’s source code has been put up for sale on two Russian language hacking forums over the weekend, at a low price of $2,000 which has put several security researchers on alert.

Between the year 2016 and 2019, the Dharma has been used to extort more than $24 million as payment from victims and has been ranked as the second most lucrative ransomware ware operation by the Federal Bureau of Investigation (FBI) at the RSA security conference held this year. 

Surfaced for the first time in the year 2016 as CrySiS, Dharma was a Ransomeware-as-a-Service (RaaS) operation and was created for criminals who could generate different versions of the ransomware to attack victims via spam campaigns or brute-force attacks on RDP entry points. As per a confirmed report by cybersecurity organization Coveware, Dharma has successfully contributed to 9.4 per cent ransomware attacks in the Q4 of 2019 alone. 

The recent update over the weekend about Dharma’s source code could result in a number of more massive attacks by criminal organizations as the source code is likely to be leaked on the public internet and could be accessed by a vast amount of audience. The update has become a grave concern for security personnel since the Dharma is considered as an advanced ransomware strain with an advanced encryption scheme. The ransomware has remained undecryptable since 2017 and has been decrypted once so far after an unknown individual leaked the master description keys, and not because of an encryption flaw.

Dharma’s code is still found to be reliable by criminal organizations and is more often now than it was used three years ago. The source code going on sale is not only a recent update that has been witnessed but threat intel lead at Avast, Jacub Kroustek was able also to trace three new Dharma versions this week alone. With the source code becoming more public, security researchers hope to find a flaw to decrypt the ransomware soon. 

Share
Related Posts

CORPORATE TRAINING PROGRAMS ON GENERATIVE AI

Generative AI Skilling for Enterprises

Our customized corporate training program on Generative AI provides a unique opportunity to empower, retain, and advance your talent.

Upcoming Large format Conference

May 30 and 31, 2024 | 📍 Bangalore, India

Download the easiest way to
stay informed

Subscribe to The Belamy: Our Weekly Newsletter

Biggest AI stories, delivered to your inbox every week.

AI Courses & Careers

Become a Certified Generative AI Engineer

AI Forum for India

Our Discord Community for AI Ecosystem, In collaboration with NVIDIA. 

Flagship Events

Rising 2024 | DE&I in Tech Summit

April 4 and 5, 2024 | 📍 Hilton Convention Center, Manyata Tech Park, Bangalore

MachineCon GCC Summit 2024

June 28 2024 | 📍Bangalore, India

MachineCon USA 2024

26 July 2024 | 583 Park Avenue, New York

Cypher India 2024

September 25-27, 2024 | 📍Bangalore, India

Cypher USA 2024

Nov 21-22 2024 | 📍Santa Clara Convention Center, California, USA

Data Engineering Summit 2024

May 30 and 31, 2024 | 📍 Bangalore, India

Subscribe to Our Newsletter

The Belamy, our weekly Newsletter is a rage. Just enter your email below.