Another threat actor is exploiting the so-called PrintNightmare vulnerability in Windows’ print spooler service to spread laterally across a victim’s network. Vice Society is a relatively new player in the big-game hunting and double-extortion attacks. For defenders, it is important to understand the attack lifecycle leading up to the deployment of ransomware. If users have not already, they should download the latest patch for Microsoft’s printNightmare from Microsoft. In this post, we’ll analyze the various TTPs used in a recent ransomware attack that leveraged this vulnerability.”]
Source: https://blog.talosintelligence.com/2021/08/vice-society-ransomware-printnightmare.html

