Skip to content

Malware

Magniber

According to TXOne, The Magniber ransomware was first identified in late 2017 when it was discovered using the Magnitude Exploit Kit to conduct malvertising attacks against users in South Korea.

Magniber is a Windows malware family.

Background

Per TXOne, Magniber ransomware first surfaced in late 2017, when researchers observed it relying on the Magnitude Exploit Kit to run malvertising campaigns aimed at South Korean users. It has stayed operational ever since, regularly refreshing its approach with fresh obfuscation and evasion techniques. The family drew attention in April 2022 by masquerading as a Windows update file to trick victims into running it, and by September 2022 it had shifted to distribution through JavaScript.


Source: Malpedia (Fraunhofer FKIE).