A new ransomware strain called BlackSuit that targets both Windows and Linux hosts has been identified by researchers at Trend Micro. The ransomware uses OpenSSL's AES for encryption and employs similar intermittent encryption techniques to speed up the process. A comparison of the Windows artifacts has identified 93.2% similarity in functions, 99.3% in basic blocks, and 98.4% in jumps based on BinDiff. The latest findings from Trend Micro show that BlackSuit is very similar to another ransomware family called Royal.
top of page
bottom of page