Watch out: GIBON enters the ransomware space

Researchers have dubbed a new strain of ransomware GIBON, although its origin remains a mystery.

Last week, ProofPoint researcher Matthew Mesa discovered the ransomware, which is being distributed in the common fashion of phishing campaigns.

According to an analysis by Lawrence Abrams, the ransomware has been called GIBON due to a user string of “GIBON” used when the malware connects to its command-and-control (C&C) server for instructions, as well as the ransomware’s administration panel where it calls itself “Encryption Machine GIBON.”

Source: ZDNet