Lorenz — Ransomware Profile
Lorenz ransomware exploited Mitel VoIP phone system vulnerabilities for initial access, targeting manufacturing and technology sectors.Also tracked as
ThunderCrypt, .sZ40
Tools & malware
- BitLocker Encryption (abused)
- Chisel Tunneling/Pivoting Tool
- Cobalt Strike Command and Control
- CrackMapExec Credential Access Tool
- FileZilla Exfiltration Tool
- Lorenz Ransomware