{"id":1906,"date":"2021-02-12T21:13:53","date_gmt":"2021-02-13T02:13:53","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=1906"},"modified":"2021-02-13T12:39:59","modified_gmt":"2021-02-13T17:39:59","slug":"phobos-a-serious-threat-for-working-enterprises","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/","title":{"rendered":"Phobos &#8211; A serious threat for working enterprises"},"content":{"rendered":"\n<p>First detected in December 2018, Phobos ransomware is another cyber threat that primarily targets organizations. However, unlike other big-game cyber crime gangs, the malicious actors behind Phobos often target smaller companies with less means to pay large ransoms. Therefore, the average ransom demand from an attack averages less than attacks on larger companies.<\/p>\n\n\n\n<p>The system takes advantage of insecure RDP (Remote Desktop Protocol) ports to infiltrate corporate networks, encrypt your data and demand a payment in Bitcoin for the ransom as we have said before. This way of operating is very similar to Dharma, the ransomware that generated headaches in 2018. They have replicated its encryption format and much of the code remains identical, so it could be implied that the people behind this rasomware are the same as the Dharma. It also shows a note advising of the hijacking and specifying the steps to follow to release the data.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How this threat called Phobos spreads<\/h2>\n\n\n\n<p>Like other cyberthreats, Phobos ransomware infects devices and potentially spreads throughout the network in these main ways:<\/p>\n\n\n\n<p><strong><em>\u25b8Patch exploits and other software vulnerabilities<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Unprotected remote desktop protocol (RDP) connections<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8As in most mlawares, phishing campaigns<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Brute force remote desktop protocol credentials<\/em><\/strong><\/p>\n\n\n\n<p>Once Phobos ransomware enters your system, it fully encrypts standard size files. Its algorithm differs for large files, however it partially encodes only selected segments. This way, you save time and maximize damage at the same time. Most file formats are affected by ransomware, including popular extensions like. avi, .backup, .doc, .docx, .html, .jpg, .jpeg, .mkv, .mp3, .mp4, .pdf, .rar and .zip.<\/p>\n\n\n\n<p>Of course, the first recommendation is to strengthen the security of the RDP ports to avoid any inconvenience. It seems that ransomware attacks will continue to be a topic of conversation this year, as it is warranted by the increase in online work and it is clear that hackers will continue to seek options to bypass our defenses.<\/p>\n\n\n\n<p>Other related reads:<br><a href=\"https:\/\/truxgoservers.com\/blog\/capcom-receives-a-ransomware-attack\/\">Capcom receives a Ransomware Attack<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/cryptolocker-unexpected-ransomware\/\">CryptoLocker \u2013 Unexpected Ransomware<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>First detected in December 2018, Phobos ransomware is another cyber threat that primarily targets organizations. However, unlike other big-game cyber crime gangs, the malicious actors behind Phobos often target smaller companies with less means to pay large ransoms. Therefore, the average ransom demand from an attack averages less than attacks on larger companies. The system [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1907,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10,16],"tags":[36,310,105],"class_list":["post-1906","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-ransomware","tag-cybersecurity","tag-phobos","tag-ransomware"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Phobos - A serious threat for working enterprises - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Cybercriminals never rest and always look for ways to bypass our defenses and this time we will see Phobos a serius threat for companies....\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Phobos - A serious threat for working enterprises - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Cybercriminals never rest and always look for ways to bypass our defenses and this time we will see Phobos a serius threat for companies....\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-02-13T02:13:53+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-02-13T17:39:59+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/02\/Phobos.png\" \/>\n\t<meta property=\"og:image:width\" content=\"850\" \/>\n\t<meta property=\"og:image:height\" content=\"491\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"Phobos &#8211; A serious threat for working enterprises\",\"datePublished\":\"2021-02-13T02:13:53+00:00\",\"dateModified\":\"2021-02-13T17:39:59+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/\"},\"wordCount\":334,\"commentCount\":1,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/Phobos.png\",\"keywords\":[\"Cybersecurity\",\"Phobos\",\"Ransomware\"],\"articleSection\":[\"Cybersecurity\",\"Ransomware\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/\",\"name\":\"Phobos - A serious threat for working enterprises - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/Phobos.png\",\"datePublished\":\"2021-02-13T02:13:53+00:00\",\"dateModified\":\"2021-02-13T17:39:59+00:00\",\"description\":\"Cybercriminals never rest and always look for ways to bypass our defenses and this time we will see Phobos a serius threat for companies....\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/Phobos.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/Phobos.png\",\"width\":850,\"height\":491},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/phobos-a-serious-threat-for-working-enterprises\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Phobos &#8211; A serious threat for working enterprises\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Phobos - A serious threat for working enterprises - Truxgo Server Blog","description":"Cybercriminals never rest and always look for ways to bypass our defenses and this time we will see Phobos a serius threat for companies....","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/","og_locale":"es_MX","og_type":"article","og_title":"Phobos - A serious threat for working enterprises - Truxgo Server Blog","og_description":"Cybercriminals never rest and always look for ways to bypass our defenses and this time we will see Phobos a serius threat for companies....","og_url":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/","og_site_name":"Truxgo Server Blog","article_published_time":"2021-02-13T02:13:53+00:00","article_modified_time":"2021-02-13T17:39:59+00:00","og_image":[{"width":850,"height":491,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/02\/Phobos.png","type":"image\/png"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"Phobos &#8211; A serious threat for working enterprises","datePublished":"2021-02-13T02:13:53+00:00","dateModified":"2021-02-13T17:39:59+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/"},"wordCount":334,"commentCount":1,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/02\/Phobos.png","keywords":["Cybersecurity","Phobos","Ransomware"],"articleSection":["Cybersecurity","Ransomware"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/","url":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/","name":"Phobos - A serious threat for working enterprises - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/02\/Phobos.png","datePublished":"2021-02-13T02:13:53+00:00","dateModified":"2021-02-13T17:39:59+00:00","description":"Cybercriminals never rest and always look for ways to bypass our defenses and this time we will see Phobos a serius threat for companies....","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/02\/Phobos.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/02\/Phobos.png","width":850,"height":491},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Phobos &#8211; A serious threat for working enterprises"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/1906","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=1906"}],"version-history":[{"count":4,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/1906\/revisions"}],"predecessor-version":[{"id":1925,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/1906\/revisions\/1925"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/1907"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=1906"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=1906"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=1906"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}