Ransomware Hackers Exploit Employee Monitoring Tools for System Access
- Cybersecurity firm Huntress reports that hackers are targeting workplace monitoring software to gain persistence in company systems.
- Attackers combined Net Monitor for Employees Professional with SimpleHelp to maintain access, leading to attempted Crazy ransomware deployment.
- The use of “bossware” has expanded the attack surface, with about a third of UK firms and roughly 60% of U.S. companies using such software.
Hackers exploit legitimate employee monitoring tools like Net Monitor for Employees Professional and SimpleHelp to blend into enterprise environments without deploying traditional malware. This method allows attackers to disguise their presence while targeting cryptocurrency wallets and exchanges.
These incidents underscore the need for improved cybersecurity measures, as the popularity of “bossware” increases the risk of ransomware attacks on enterprises globally. (Source)