Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Darktrace AI stops Emotet trojan cyber-attack

Security

Darktrace AI stops Emotet trojan cyber-attack

Cambridge based Darktrace announced today that its Autonomous Response technology, Antigena, successfully took action to halt a recent cyber-attack targeting a construction supply enterprise in Saudi Arabia.

Image copyright Shutterstock

The company, which has been in business for over 50 years and has over 35 branches, was infiltrated by attackers in the early hours of the morning. Darktrace's Self-Learning AI spotted that a company device was compromised by Emotet, an infamous trojan that rapidly spreads malware from device to device, exfiltrating sensitive financial information. Emotet, which had defeated static security controls in the organisation, is often the pre-cursor to ransomware if left uninterrupted.

Advertisement
ODU RT 2

Within minutes, Darktrace AI took action to successfully block malicious communications occurring between the infected device and an unusual host.

Self-Learning AI formed a constantly evolving understanding of both IT and operational technologies at the Saudi Arabian construction giant, allowing it to identify the subtle, emerging signs of Emotet. Within seconds, the algorithms took targeted action to interrupt the encroaching attack. This allowed the organisation to continue normal business operations without disruption and investigate the incident further.

The attack occurred amidst rising global cyber tensions and follows warnings from the Five Eyes urging companies to bolster defenses – particularly operators of critical national infrastructure or organisations that are critical to global supply chains.

"Since its emergence in 2014 the Emotet trojan has undergone multiple iterations and recently made a comeback globally," commented Max Heinemeyer, Director of Threat Hunting at Darktrace. "Emotet is particularly dangerous because this type of botnet can quickly escalate into something like ransomware if not stopped. Business leaders should know there is technology out there that can stop these attacks in their tracks, before sensitive data leaves the organization and before any ransom is demanded."
 

Advertisement
ODU RT

 

 

Advertisement
Advanced Navigation LB 1
CCL Solutions appoints Seamus O’Reilly as Technical Director, Cyber Services

Security

CCL Solutions appoints Seamus O’Reilly as Technical Director, Cyber Services

18 April 2024

Digital forensics and cyber security specialist CCL Solutions Group has announced the appointment of Seamus O’Reilly as its new Technical Director, Cyber Services.

Met leads infiltration of fraud platform used by criminals worldwide

Security

Met leads infiltration of fraud platform used by criminals worldwide

18 April 2024

A website used by more than 2,000 criminals to defraud victims worldwide has been infiltrated in the Met’s latest joint operation to tackle large-scale online fraud.

Bridewell research reveals UK CNI ransomware risks

Aerospace Security

Bridewell research reveals UK CNI ransomware risks

17 April 2024

Three-in-ten UK-based critical national infrastructure (CNI) organisations (30%) that have fallen victim to a ransomware attack have risked legal repercussions by paying a ransom.

Goldilock and CR14 to support CNI testing under NATO DIANA

Defence Security

Goldilock and CR14 to support CNI testing under NATO DIANA

17 April 2024

British cybersecurity startup Goldilock, has partnered with CR14, a cyber defence organisation established by the Estonian ministry of defence and the host of NATO’s operative Cyber Defence Centre of Excellence (CCDCOE), to conduct testing activities with the aim of increasing the resilience of critical national infrastructure (CNI).

Advertisement
Marshall RT 2
ODU Connectors introduces MINI-SNAP Super Shorty

Aerospace Defence Security Space

ODU Connectors introduces MINI-SNAP Super Shorty

16 April 2024

ODU Connectors has introduced its MINI-SNAP Super Shorty, designed to provide a compact solution for large electrical engineering challenges.

Smiths Detection launch advanced SDX 10060 XDi X-ray diffraction scanner

Aerospace Security Events

Smiths Detection launch advanced SDX 10060 XDi X-ray diffraction scanner

16 April 2024

Smiths Detection has today launched the SDX 10060 XDi, a ground-breaking X-ray scanner powered by diffraction technology.

Advertisement
Marshall RT 2