A new Ransomware campaign targeted millions by spoofing Telco giant Telia. Attackers have launched a sophisticated and surgical campaign that leverages on a mix of attack vectors. Most of the victims are located in Sweden, in a first stage of the attack the threat actors send victims message including a link to an invoice which appears to come from the telecom giant. The TorrentLocker encrypts all the data files available on the local drive and then displays a ransom note to instruct victims on the payment procedure.”]
Source: https://securityaffairs.co/wordpress/47834/malware/telia-ransomware-campaign.html