From Wiper to Ransomware: The Evolution of Agrius

A new threat actor SentinelLabs tracked as Agrius was observed operating in Israel starting in 2020. Initially engaged in espionage activity, Agrius deployed a set of destructive wiper attacks against Israeli targets, masquerading the activity as ransomware attacks. The attacks were carried out using DEADWOOD (aka Detbosit), a wiper with unconfirmed links to an Iranian threat group.

GET TAHAWULTECH.COM IN YOUR INBOX

The free newsletter covering the top industry headlines