Trigona Ransomware Trolling for ‘Poorly Managed’ MS-SQL Servers


The Trigona ransomware threat actors are waging a campaign against Microsoft SQL database servers because many of them have external connections and weak passwords, leaving them open targets for brute force or dictionary attacks.

These vulnerable MS-SQL servers were designated as “poorly managed” by AhnLab Security’s new alert about Trigona’s nefarious activities.

“If a threat actor manages to log in, control over the system will be passed to them, allowing them to install malware or execute malicious commands,” the report said.