Ransomware abuses Amazon AWS feature to encrypt S3 buckets

Published on January 13, 2025

A new ransomware campaign encrypts Amazon S3 buckets using AWS's Server-Side Encryption with Customer Provided Keys (SSE-C) known only to the threat actor, demanding ransoms to receive the decryption key. [...]