New Amazon Ransomware Attack—‘Recovery Impossible’ Without Payment

A new ransomware threat called Codefinger is targeting Amazon Web Services (AWS) S3 users, leveraging AWS’s server-side encryption with customer-provided keys (SSE-C). Once attackers gain account credentials—often through reused or weak passwords—they encrypt user data with AES-256 keys that are not stored on AWS, making recovery impossible without the attacker’s key.

Continue Reading