New Ransomware Eldorado Targets VMware ESXi and Windows VMs

10 Jul 2024

A new ransomware named Eldorado has emerged, targeting VMware ESXi and Windows VMs across multiple organizations and sectors. The ransomware, operated as a service, uses various tactics to infiltrate systems and encrypt data.

A Sophisticated Threat

The administrator of the RaaS service utilized NTLM or administrator passwords to generate ransomware samples. Eldorado, built on Golang for cross-platform operations, boasts customization capabilities that enhance its success rate. It tailors attacks using company names, target networks, admin credentials, and ransom note details.

As of June 2024, 16 companies in the US and Europe have reported being attacked. The real estate sector is the primary target, with other industries like professional services, healthcare, education, and manufacturing also affected. Some attacks even targeted business services, messaging and telecommunications, transportation, government, administrative services, and the military.

Recommendations for Mitigation

Group-IB advises organizations to strengthen security measures to mitigate risks posed by ransomware attacks like Eldorado. Recommendations include:

  • Employee Training: Educate staff to identify phishing attacks and other common infiltration tactics.
  • Regular Data Backups: Ensure data is backed up frequently and securely to minimize damage in case of an attack.
  • Robust Security Protocols: Implement strong security measures such as multi-factor authentication and regular system updates.

These measures are essential to safeguard organizations against evolving ransomware threats.

For more information on the Eldorado ransomware threat, refer to Group-IB’s detailed report.

Anuj Mudaliar, a tech editor at Spiceworks, covers various topics, including cloud, cybersecurity, AI, and hardware. Outside of work, Anuj enjoys outdoor activities like trekking, camping, and stargazing. He also has a passion for cooking and exploring global cuisines.

What is an eldorado?

El Dorado is a term that originated from Spanish explorers, referring to a mythical city or empire of immense wealth, often associated with gold. Over the years, it has come to symbolize any ultimate prize or

Top charts for Desktop Windows

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
6118630
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1158287
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
448312
downloads
WinRAR

WinRAR

Latest update WinRAR download for free for Windows PC or Android mobile

5
735 reviews
434154
downloads

News and reviews for Desktop Windows

Grey State Unveils a Lovecraftian Extraction Shooter

Grey State Studio's new game melds horror themes with tactical shooter elements, set for 2026 release.

Read more

ChromeOS Flex Offers New Life for Unsupported PCs

ChromeOS Flex extends the lifespan of older devices, a practical option as Windows 10 support ends.

Read more

Doom: The Dark Ages Sees Major Price Drop on Fanatical

Doom: The Dark Ages, now on Fanatical, is at its lowest price ever, 42% off. Explore the Doomslayer's battles with demons in this intense FPS.

Read more

Flyoobe Streamlines Windows 11 Upgrades on Older PCs

Flyoobe's latest update simplifies upgrading to Windows 11, a timely solution as Microsoft drops Windows 10 support.

Read more

The Legend of Khiimori Demo Unveiled at Steam Next Fest

Explore 13th-century Mongolia as a courier in Khiimori, focusing on realistic horse mechanics and detailed environments.

Read more

Blue Protocol Guide: Minsterhorn's Treasure Map Quest

Discover the hidden secrets in Blue Protocol's Treasure Map quest at Minsterhorn's windmill for rewards.

Read more

Polymorphic Malware Poses New Threat to Cybersecurity

Cybercriminals use polymorphic malware to evade detection, complicating investigations and security efforts globally.

Read more

Everwind Demo Impresses at Steam Next Fest

Everwind's demo blends RPG and crafting elements, earning high praise during Steam Next Fest, where it peaked at 8,000 players.

Read more

Pandora Tomorrow Returns to Steam with Uplay

Pandora Tomorrow is back on Steam with a 40% discount and a Uplay requirement.

Read more

IAmAntimalware Tool Bypasses Antivirus Security with Code Injection

IAmAntimalware, released by Two Seven One Three, circumvents antivirus protections using DLL injection and service cloning.

Read more