Advertisement
The Trigona ransomware threat actors are waging a campaign against Microsoft SQL database servers because many of them have external connections and weak passwords, leaving them open targets for brute force or dictionary attacks.
These vulnerable MS-SQL servers were designated as “poorly managed” by AhnLab Security’s new alert about Trigona’s nefarious activities.
“If a threat actor manages to log in, control over the system will be passed to them, allowing them to install malware or execute malicious commands,” the report said.