European healthcare organizations are facing a sophisticated cyber threat from a newly identified ransomware strain called NailaoLocker, deployed as part of a campaign tracked as Green Nailao by Orange Cyberdefense CERT. The Green Nailao campaign begins with attackers exploiting CVE-2024-24919, a critical vulnerability in Check Point Security Gateways enabling unauthorized access to VPN credentials. While researchers at Orange Cyberdefense detected that this combination create a hybrid threat which threaten both data security and operational continuity in critical healthcare infrastructure. Unlike sophisticated ransomware strains, NailaoLocker exhibits operational shortcomings: it ignores network shares, fails to terminate processes locking files, and leaves diagnostic logs in %ALLUSERPROFILE%\unlock_please_view_this_file_. Cyber Security News is a Dedicated News Platform For Cyber News, Cyber Attack News, Hacking News & Vulnerability Analysis.
This Cyber News was published on cybersecuritynews.com. Publication date: Thu, 20 Feb 2025 20:15:18 +0000