New Ransomware Found Exploiting Former Windows Zero-Day Flaw

The Windows vulnerability was last seen being used in a small number of targeted attacks.

Advertisement
By Indo-Asian News Service | Updated: 6 July 2019 16:53 IST

Geographic spread of Sodin ransomware from April to June 2019

Photo Credit: Kaspersky

Researchers at cybersecurity firm Kaspersky have uncovered new encryption ransomware named Sodin (Sodinokibi or REvil) that exploits a recently discovered Windows vulnerability to get elevated privileges in an infected system. The ransomware takes advantage of the architecture of the central processing unit (CPU) to avoid detection - functionality that is not often seen in ransomware.

"Ransomware is a very popular type of malware, yet it's not often that we see such an elaborate and sophisticated version: using the CPU architecture to fly under the radar is not a common practice for encryptors," said Fedor Sinitsyn, a security researcher at Kaspersky.

"We expect a rise in the number of attacks involving the Sodin encryptor, since the amount of resources that are required to build such malware is significant. Those who invested in the malware's development definitely expect if to pay off handsomely," Sinitsyn added.

Advertisement

The researchers found that most targets of Sodin ransomware were found in the Asian region: 17.6 percent of attacks have been detected in Taiwan, 9.8 percent in Hong Kong and 8.8 percent in the Republic of Korea.

Advertisement

However, attacks have also been observed in Europe, North America and Latin America, Kaspersky said, adding that the ransomware note left on infected PCs demands $2500 worth of Bitcoin from each victim.

The vulnerability CVE-2018-8453 that the ransomware uses was earlier found to be exploited by the FruityArmor hacking group. The vulnerability was patched on October 10, 2018, Kaspersky said.

Advertisement

To avoid falling victim to Sodin threats, make sure that the software used in your company is regularly updated to the most recent versions, said Kaspersky researchers.

Security products with vulnerability assessment and patch management capabilities may help to automate these processes, they added.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Pixel 10 Series Gets Price Cuts During Google's End of Year Sale: See Offers
  2. OnePlus 15R Storage Options Leaked: Here's How Much It Might Cost in India
  3. Mrs Deshpande OTT Release Date: Madhuri Dixit's Starrere to Premiere on This Date
  4. Logitech MX Master 4 Launches in India With These Features
  5. RAM Crisis 2026: 16GB Phones Out, 4GB Models Making a Comeback
  6. Motorola Edge 70 With 5,000mAh Battery Launched in India at This Price
  7. Vivo S50, S50 Pro Mini With Snapdragon Chips Launched at These Prices
  8. Redmi Note 15 5G Chipset Revealed Ahead of January 6 India Launch
  9. Apple Fitness+ Service Is Now Available in India: See Features
  10. Motorola Edge 70 First Impressions
  1. The Hunting Wives Out on OTT: Know Everything About This American Thriller Mystery Series
  2. All Her Fault Now Streaming on JioHotstar: Know Everything About This Thriller Series
  3. Wednesday Season 3 Set for July 2027 on Netflix: Jenna Ortega Returns as the Iconic Addams Heir
  4. Lakshmi Manchu’s Daksha: The Deadly Conspiracy Available for Streaming on Amazon Prime Video
  5. Posthouse Now Available to Stream on Netflix: Know Everything About This Psychological Thriller Film
  6. Redmi Note 15 5G Chipset Confirmed Ahead of January 6 Launch in India: Expected Features, Specifications
  7. Lenovo Idea Tab Plus Launched in India With 12.1-Inch Display, 10,200mAh Battery: Price, Specifications
  8. The End of 16GB RAM Phones? AI Boom Forces Smartphone Makers to Bring Back 4GB Models
  9. Xiaomi 17 Ultra Tipped to Launch Alongside Redmi Turbo 5 Series, New Wearables
  10. Mrs Deshpande OTT Release Date: Madhuri Dixit’s Psychological Thriller Premieres on This Date
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.