¡El Grupo de Delitos Financieros FIN11 recurre al Ransomware y Extorsión de Datos Robados!

Opinión por:
Jose A Carreon Romero - CEO Chief Security Officer – ENCRYPTED

El secuestro de datos valiosos mediante sofisticadas técnicas de ransomware se ha convertido en un negocio altamente rentable para los ciberdelincuentes cambiando el enfoque.


Según un informe reciente, el grupo conocido como FIN11, que a lo largo de 2017-1018 se dirigió principalmente a sectores financieros y minoristas, ha realizado la transición de su arsenal en 2019 a la distribución de ransomware duplicando la extorsión de datos robados que amenaza a víctimas con divulgar datos públicamente si no pagan rescates.

FIN11 ha estado activo desde 2016 y sus miembros probablemente provengan de países de habla Rusa. Los metadatos encontrados en sus herramientas revelan el uso del alfabeto Cirílico donde el propio malware comprueba para evitar atacar sistemas configurados con idiomas de la CEI (Comunidad de Estados Independientes), una coalición de países de la ex Unión Soviética.

FIN11 ha realizado algunas de las campañas de distribución de malware más grandes en múltiples sectores en 2020, pasando a un modelo basado en el programa de ransomware llamado CLOP.

Lo que necesitas saber sobre el grupo FIN11:

  1. FIN11 utiliza correos de gran volumen con señuelos genéricos como órdenes de venta, extractos bancarios y facturas, pero también ataques dirigidos y personalizados en inglés, español, coreano y alemán con un número significativo de ataques a Alemania.
  2. Los métodos de entrega de malware cambian todos los meses para evadir la detección. Comenzó con archivos de Office infectados, luego uso de archivos adjuntos y ahora incluye URL en correos electrónicos HTML dirigidos a usuarios de Office en servidores remotos.
  3. En los últimos ataques de FIN11, los correos maliciosos tenían un archivo adjunto HTML que redirigía a las víctimas a dominios comprometidos, que las redirigía aún más a dominios controlados por atacantes que entregaron los archivos maliciosos de Office después de que los usuarios pasaran un desafío CAPTCHA. Es probable que esto se haya agregado para bloquear los análisis de URL automatizados por parte de productos y servicios de seguridad.
  4. Si una víctima parece interesante, después de la intrusión inicial, los atacantes FIN11 implementan múltiples puertas traseras con el objetivo de moverse lateralmente y obtener privilegios de administrador de dominio. Aunque sus herramientas exclusivas como Flawed Ammyy y MIXLABEL se utilizan para ganar el punto de apoyo inicial, la actividad de movimiento lateral implica el uso de muchas herramientas disponibles públicamente.
  5. A partir de este año, FIN11 también adoptó la táctica de robar datos y amenazar con liberarlos para obligar a las víctimas de ransomware a pagar. El grupo ha creado un sitio web oscuro donde han publicado datos parciales de empresas que se negaron a pagar.


Mg. José Alfredo Carreón Romero - MSCS

Más de 30 años de experiencia en Tecnología Informática, 22 de los cuales dedicados a Seguridad Informática. Es CEO de ENCRYPTED, profesor y autor del Curso Security Informatics enseñándolo en la Universidad de California y ahora en UTEC y TECSUP de Perú. Trabajó con Steve Jobs en Apple como Evangelista Tecnológico y fue Director de Marketing de Seguridad Informática en HP, SUN, Brocade y iS3. Maestría en Computer Science en el Instituto Tecnológico Chalmers de la Universidad de Gothemburg - Suecia. Conoce más de su trabajo aquí

SecureIQ es un newsletter de análisis sobre los más recientes eventos de seguridad informática y ciberseguridad que tienen lugar en el nuevo mundo de Covid-19, distanciamiento social, comunicaciones virtuales / móviles y de uso intensivo de las redes sociales.

Únete a la comunidad virtual de ciberseguridad y obtén la información más actualizada de seguridad informática y ciberseguridad aquí


Escribe aquí tu comentario.

Esta pregunta es para comprobar si usted es un visitante humano y prevenir envíos de spam automatizado.
Amy Gray
13/06/2023 | 01:19

How do we relationship

How Do We Relationship? play a fundamental role in our lives, shaping our experiences and influencing our well-being. Whether it’s with our partners, friends, family, or colleagues, building and maintaining healthy relationships is crucial. In this article, we will explore the key aspects of successful Relation and provide valuable insights on how to nurture and strengthen them.


how do we relationship

does hawaii have casinos
13/06/2023 | 06:45

does hawaii have casinos

Does Hawaii Have Casinos? Hawaii, with its stunning natural beauty and vibrant culture, is a dream destination for many. However, when it comes to casinos and gambling, Hawaii stands apart from most other states.


does hawaii have casinos

Alexandra Gardiner
14/06/2023 | 02:14

How Do You Spell Casino

How Do You Spell Casino? When it comes to spelling, even the most proficient writers may stumble upon certain words that leave them perplexed. One such word that often raises questions is “casino.”


How Do You Spell Casino

Amy Gray
14/06/2023 | 06:49

What is a Relationship Banker

What is a Relationship Banker are an essential part of human life, influencing our emotional well-being and providing a sense of connection and belonging. Whether it’s a romantic partnership, friendship, or family bond, relationships play a crucial role in shaping our experiences and personal growth.


what is a relationship banker

Amy Gray
15/06/2023 | 02:02

What is a vortex relationship

What is a Vortex Relationship? Have you ever experienced a relationship that feels like an exhilarating whirlwind of love, connection, and growth? A vortex relation, as coined by relationship experts, is an extraordinary bond that goes beyond the conventional dynamics of partnerships.


what is a vortex relationship

Alexandra Gardiner
15/06/2023 | 03:45

What casinos have coin pushers

What Casinos Have Coin Pushers? Are you a fan of arcade games and the thrill of casinos? If so, you may be wondering which casinos offer the popular game of coin pushers. Coin pushers, also known as coin dozers, are mechanical arcade games


what casinos have coin pushers

Amy Gray
16/06/2023 | 01:54

How to Spell relationship

How to Spell Relationship? In today’s digital age, where communication often takes place through text messages, emails, and social media, the way we spell words has become increasingly important. Spelling errors can have a significant impact on various aspects of our lives, including relationships


How to spell relationship

Alexandra Gardiner
16/06/2023 | 07:08

Why Do Casinos Have to Be on Water: Exploring the Tradition and Legalities

Why Do Casinos Have to Be on Water? Have you ever wondered why some casinos are located on water? It seems like a peculiar requirement, considering that gambling doesn’t necessarily need to take place near bodies of water.


why do casinos have to be on water

Amy Gray
19/06/2023 | 01:58

Best Dating Apps for College Students

Best Dating Apps for College Students In right now’s digital age, courting apps have turn into more and more well-liked amongst school college students. These apps supply a handy manner for younger adults to satisfy and join with potential romantic companions.


Best Dating Apps for College Students

Amy Gray
19/06/2023 | 02:01

Best Dating Apps for College Students

Best Dating Apps for College Students In right now’s digital age, courting apps have turn into more and more well-liked amongst school college students. These apps supply a handy manner for younger adults to satisfy and join with potential romantic companions.


Best Dating Apps for College Students

Amy Gray
19/06/2023 | 02:05

Best Dating Apps for College Students

Best Dating Apps for College Students In right now’s digital age, courting apps have turn into more and more well-liked amongst school college students. These apps supply a handy manner for younger adults to satisfy and join with potential romantic companions.


Best Dating Apps for College Students

Alexandra Gardiner
19/06/2023 | 05:24

X Games Casino: Experience the Thrill of Online Gambling 2023

In today’s digital era, online casinos have gained immense popularity as a convenient and exciting way to enjoy gambling experiences. One such online casino that stands out from the rest is X Games Casino.


x games casino

Alexandra Gardiner
19/06/2023 | 06:32

X Games Casino: Experience the Thrill of Online Gambling 2023

In today’s digital era, online casinos have gained immense popularity as a convenient and exciting way to enjoy gambling experiences. One such online casino that stands out from the rest is X Games Casino.


x games casino

Alexandra Gardiner
20/06/2023 | 00:48

Milky Way Casino Game: A Stellar Adventure in Gambling

Are you ready to embark on an extraordinary journey through the vast expanse of the Milky Way while experiencing the thrill of casino games? Look no further! Milky Way Casino Game brings you an immersive and out-of-this-world gambling experience like no other.


milky way casino game

Amy Gray
21/06/2023 | 01:31

Best Dating Apps in Chicago: Finding Love in the Windy City

Best Dating Apps in Chicago, Dating in Chicago can be an exciting yet challenging experience. With a bustling city full of diverse individuals, finding a compatible partner can feel like searching for a needle in a haystack


best dating apps chicago

Amy Gray
21/06/2023 | 01:32

Best Dating Apps in Chicago: Finding Love in the Windy City

Best Dating Apps in Chicago, Dating in Chicago can be an exciting yet challenging experience. With a bustling city full of diverse individuals, finding a compatible partner can feel like searching for a needle in a haystack


best dating apps chicago

Amy Gray
21/06/2023 | 01:33

Best Dating Apps in Chicago: Finding Love in the Windy City

Best Dating Apps in Chicago, Dating in Chicago can be an exciting yet challenging experience. With a bustling city full of diverse individuals, finding a compatible partner can feel like searching for a needle in a haystack


best dating apps chicago

Amy Gray
21/06/2023 | 02:20

Best Dating Apps in Seattle: Find Your Perfect Match

Best Dating Apps in Seattle Are you single and ready to mingle in Seattle? With its vibrant culture, stunning landscapes, and tech-savvy population, Seattle offers a fantastic dating scene for those seeking meaningful connections.


best dating apps seattle

Amy Gray
21/06/2023 | 02:23

Best Dating Apps in Seattle: Find Your Perfect Match

Best Dating Apps in Seattle Are you single and ready to mingle in Seattle? With its vibrant culture, stunning landscapes, and tech-savvy population, Seattle offers a fantastic dating scene for those seeking meaningful connections.


best dating apps seattle