Storm-0381
Storm-0381 is a threat actor identified by Microsoft as a Russian cybercrime group. They are known for their use of malvertising to deploy Magniber, a type of ransomware.
Storm-0381 is a Russian cybercrime group tracked by Microsoft, known for large-scale malvertising campaigns to distribute Magniber ransomware.
Storm-0381, also tracked as DEV-0381, is a Russian cybercrime group identified by Microsoft. They target a broad set of victims, primarily focusing on individual users through widespread malvertising campaigns. Their main TTP involves using malicious advertisements to distribute fake installers for popular software, ultimately deploying Magniber ransomware. Defenders should focus on filtering suspicious advertisements, cautioning users against unexpected software installation prompts, and implementing strong endpoint protection against ransomware.
Storm-0381 is a threat actor identified by Microsoft as a Russian cybercrime group. They are known for their use of malvertising to deploy Magniber, a type of ransomware.
Storm-0381 uses malvertising campaigns that target a broad set of victims, primarily individual users, to distribute fake installers of popular software.
The malvertising campaign run by Storm-0381 uses fake software installers to infect victims and ultimately deploy Magniber ransomware.
Every claim on this page is drawn from the cited source (MISP Galaxy, MITRE ATT&CK, ransomware.live) — no attribution is invented.