OpenText Security Solutions Announces Nastiest Malware of 2022

Analysis Reveals the Emergence of Triple Extortion and a Possible End to the Hacker Holiday

OpenText™ (NASDAQ: OTEX), (TSX: OTEX), today announced the Nastiest Malware of 2022, a ranking of the year's biggest cyber threats. For the fifth year running, OpenText Security Solutions' threat intelligence experts combed through the data, analyzed different behaviors, and determined which malicious payloads are the nastiest. Emotet regained its place at the top, reminding the world that while affiliates may be taken down, the masterminds are resilient. LockBit evolved its tactics into something never seen before: triple extortion. Analysis also revealed an almost 1100% increase in phishing during the first four months of 2022 compared to the same period in 2021, indicating a possible end to the "hacker holiday," a hacker rest period following the busy holiday season.

"The key takeaway from this year's findings is that malware remains center stage in the threats posed towards individuals, businesses, and governments," said Muhi Majzoub, EVP and Chief Product Officer, OpenText. "Cybercriminals continue to evolve their tactics, leaving the infosec community in a constant state of catch-up. With the mainstream adoption of ransomware payloads and cryptocurrency facilitating payments, the battle will continue. No person, no business—regardless of size—is immune to these threats."

While this year's list may designate payloads into different categories of malware, it's important to note many of these bad actor groups contract work from others. This allows each group to specialize in their respective payload and perfect it.

2022 Nastiest Malware

  1. Emotet remains the most successful botnet in existence, following a brief shutdown last year. Its job is to send malspam campaigns to billions of emails a day. It creates a foothold on a victim's computer, with follow-up malware that will then move laterally and compromise the rest of the environment before bringing in the final payload of ransomware.
  2. LockBit is this year's most prolific and successful ransomware group. While the group has been around for about three years as a ransomware-as-a-service (RaaS) group, they continue to advance their tactics. In addition to taking data, holding it for ransom and threatening to leak it, triple extortion adds a third layer: a distributed denial-of-service (DDoS) attack on an entire system to completely lock it down.
  3. Conti, a RaaS malware, has been on the Nastiest Malware radar for quite some time. In February, Conti released a statement of support on their leak site for the Russian government. Shortly after a twitter account, Conti leaks , leaked Conti's internal chats dating back almost two years resulted in the dismantling of their leak site and command and control servers. Conti has since rebranded into multiple operations, most notably HelloKitty, BlackCat, and BlackByte.
  4. Qbot (AKA Qakbot), possibly the oldest info-stealing trojan, still receives updates today. It moves throughout the network and infects the entire environment while "casing the joint" to allow access to as much data as possible to exfiltrate for extortion and to prepare for the final stage of ransomware payloads.
  5. Valyria is another strain of a used-to-be banking trojan turned into malspam botnet with email attachments, turned into malicious scripts that starts an infection chain typically resulting in ransomware. The tricky part about Valyria is the complexity of the components and its ability to evade detection.
  6. Cobalt Strike and Brute Ratel are adversarial attack simulation tools. Cobalt Strike is a pen testing tool designed by white hats; Brute Ratel was created for red teams. The purpose of these tools is to help teams simulate attacks to understand the tactics hackers use, determine security gaps, and make the appropriate changes. Not surprising, Cobalt Strike, and now Brute Ratel, are frequently used by the bad guys.

To learn more about the findings of this year's Nastiest Malware analysis, visit Webroot Community .

About OpenText Security Solutions
As attack surfaces expand, OpenText Security Solutions help organizations of every size achieve cyber resilience with Webroot Security, Carbonite Data Management, BrightCloud® Threat Intelligence, and EnCase Digital Forensics and Threat Response. With a united front of best practices paired with layered solutions, we prevent, detect, and restore small, mid-sized and enterprise business operations in the event of a cybersecurity attack.

About OpenText
OpenText, The Information Company™, enables organizations to gain insight through market-leading information management solutions, powered by OpenText Cloud Editions. For more information about OpenText (NASDAQ: OTEX, TSX: OTEX) visit opentext.com .

Connect with us:
OpenText CEO Mark Barrenechea's blog
Twitter
| LinkedIn

Certain statements in this press release may contain words considered forward-looking statements or information under applicable securities laws. These statements are based on OpenText's current expectations, estimates, forecasts, and projections about the operating environment, economies and markets in which the company operates. These statements are subject to important assumptions, risks, and uncertainties that are difficult to predict, and the actual outcome may be materially different. OpenText's assumptions, although considered reasonable by the company at the date of this press release, may prove to be inaccurate and consequently its actual results could differ materially from the expectations set out herein. For additional information with respect to risks and other factors which could occur, see OpenText's Annual Report on Form 10-K, Quarterly Reports on Form 10-Q and other securities filings with the SEC and other securities regulators. Unless otherwise required by applicable securities laws, OpenText disclaims any intention or obligations to update or revise any forward-looking statements, whether as a result of new information, future events or otherwise.

Copyright © 2022 OpenText. All Rights Reserved. Trademarks owned by OpenText. One or more patents may cover this product(s). For more information, please visit https://www.opentext.com/patents .

OTEX-G

Cision View original content to download multimedia: https://www.prnewswire.com/news-releases/opentext-security-solutions-announces-nastiest-malware-of-2022-301638296.html

SOURCE Open Text Corporation

News Provided by PR Newswire via QuoteMedia

OTEX:CA
The Conversation (0)
Syntheia (CSE:SYAI)

Syntheia Announces Closing of Private Placement

Syntheia Corp. (CSE: SYAI) (syntheia.ai) (the "Company"), is pleased to announce that further to its press releases dated July 23, 2025, and September 2, 2025 the Company has closed the second tranche of its non-brokered private placement financing for gross proceeds of $709,677.48 through the issuance of 5,913,979 units (each, a "Unit") at a price of $0.12 per Unit (the "Offering").

Each Unit was comprised of one common share in the capital of the Company (each, a "Common Share") and one Common Share purchase warrant (each, a "Warrant"). Each Warrant is exercisable to acquire one Common Share at a price of $0.16 until September 2, 2030 (the "Expiry Date"), subject to an accelerated expiry in the event the volume weighted average trading price of the Common Shares exceeds $0.20 for 20 consecutive trading days, the Company may, within 10 business days of the occurrence of such event, deliver a notice to the holders of the Warrants accelerating their Expiry Date to a date that is not less than 30 days following the date of such notice and the issuance of a press release by the Company announcing the acceleration notice (the "Accelerated Exercise Period"). Any unexercised Warrants shall automatically expire at the end of the Accelerated Exercise Period.

Keep reading...Show less
Circuit board forming a brain shape on a digital blue background.

Nebius Shares Soar on US$17.4 Billion Microsoft AI Deal

Nebius Group (NASDAQ:NBIS) surged on Tuesday (September 9) after announcing a multibillion-dollar deal with Microsoft (NASDAQ:MSFT) to provide dedicated artificial intelligence (AI) infrastructure.

Valued at US$17.4 billion over five years and expandable to US$19.4 billion if demand increases, the arrangement will see Nebius supply Microsoft with computing capacity from a new data center under construction in Vineland, New Jersey.

The news sent Nebius shares up 43.3 percent to US$91.75, their highest level on record.

Keep reading...Show less
OpenAI logo on a dark screen with a soft blue gradient background.

OpenAI Taps Broadcom to Build Custom AI Chips in Face of GPU Supply Concerns

OpenAI, the company behind ChatGPT, is reportedly set to begin large-scale production of its own artificial intelligence (AI) chips through a partnership with Broadcom (NASDAQ:AVGO).

Experts in the space see the move as a bid to cut reliance on chip giant NVIDIA (NASDAQ:NVDA) and ease the global shortage of processors driving platforms like ChatGPT.

The news came after Broadcom CEO Hock Tan told analysts in a September 4 call that the company had secured a fourth major customer that has committed to a US$10 billion order.

Keep reading...Show less
Person using laptop with generative AI, ChatGPT and other symbols floating between them.

10 Generative AI Stocks to Watch as ChatGPT Soars

The launch of OpenAI’s ChatGPT created a major buzz around artificial intelligence (AI) stocks.

ChatGPT is an AI chatbot software application that uses machine-learning techniques to emulate human-written conversations. This technology is called generative AI, and it's been making an impact on myriad industries, including marketing, security, healthcare, gaming, communication, customer service and software development.

The potential behind generative AI has been the primary driver behind a major stock rally that has helped the S&P 500 (INDEXSP:.INX) and Nasdaq Composite (INDEXNASDAQ:.IXIC) reach multiple new highs since 2023.

Keep reading...Show less
RemSense CEO and Managing Director Warren Cook

RemSense Eyes More Strategic Partnerships for Global Growth

RemSense (ASX:REM) is looking to secure more strategic partnerships as the company eyes global expansion, according to CEO and Managing Director Warren Cook.

“We have a strong pipeline of services to deliver to our existing clients that's going to take us right up through to the end of the year and into the early new year. For our global growth, we see partnerships as a critical part of our strategy to give us scale and capacity to grow throughout other parts of the region,” Cook said in an interview with the Investing News Network.

RemSense’s 3D visualisation technology — called virtualplant — is used by some major companies, including Woodside Energy Group (ASX:WDS,NYSE:WDS) and Chevron (NYSE:CVX).

Keep reading...Show less
Glowing red maple leaf on digital circuit board background.

Canada's Stealthy AI Strategy: Why the Future is B2B, Not Just Chatbots

As global giants chase consumer-facing artificial intelligence (AI), Canada has adopted a different approach.

The northern nation has excelled in developing B2B AI solutions for enterprises, governments and research institutions. This discreet strategy aims to cultivate a trusted AI environment, fostering innovation and economic growth within Canada, while building a resilient ecosystem safeguarded from external influences.

While the spotlight often falls elsewhere, Canada’s AI strategy could present a unique opportunity for investors seeking long-term growth in the evolving AI landscape.

Keep reading...Show less

Latest Press Releases

Related News

×