A recently discovered cyber-espionage toolkit called Ramsay is designed to steal documents, take screenshots and compromise devices. The origins of the Ramsay toolkit remain unclear, but ESET researchers have found at least three versions of the malware. The malware can penetrate air-gapped networks, which supposedly are more secure because their infrastructure is physically isolated. Large-scale industrial companies and oil and gas firms, as well as government agencies are among the most common users of these networks. Researchers suspect that the group has ties to the APT group associated with South Korea.”]
Source: https://www.cuinfosecurity.com/cyber-espionage-malware-targets-air-gapped-networks-report-a-14281

