New Ransomware Threat Targets FreeBSD Servers, raising Concerns for U.S. Organizations
A newly emerged ransomware group, dubbed Interlock, is raising alarms across the U.S. by specifically targeting FreeBSD servers, a popular operating system used in critical infrastructure and essential services.
Launched in late September 2024, Interlock employs a unique approach, utilizing an encryptor specifically designed for FreeBSD. This tactic sets it apart from other ransomware groups that typically focus on Linux-based VMware ESXi servers.
The group has already claimed responsibility for attacks on six organizations, including Wayne County, Michigan, which experienced a cyberattack in October 2024.
Interlock’s Modus Operandi: Double Extortion and Critical Disruption
Interlock’s attack method follows a familiar pattern: breaching corporate networks, stealing sensitive data, spreading laterally to other devices, and encrypting files. The attackers then employ double-extortion tactics,threatening to leak stolen data unless ransom demands,ranging from hundreds of thousands to millions of dollars,are met.
the group’s focus on FreeBSD is particularly concerning. This operating system …