Cephalus Ransomware Emerges as Go-Based Double-Extortion Threat Targeting Exposed RDP

The Cephalus ransomware is a newly emerged Go-based threat that employs a double-extortion tactic, stealing data before encrypting files and targeting exposed RDP services lacking multi-factor authentication. It actively tamper with Windows Defender protections and uses hybrid encryption, while defenders are advised to secure RDP access and monitor for suspicious activities.

Edward Kiledjian @ekiledjian