Summary:
Researchers recently analysed a sample of a new SolidBit ransomware variant that targets users of popular video games and social media platforms. The malware was uploaded to GitHub, where it is disguised as different applications, when an unsuspecting victim runs the application, it automatically executes malicious PowerShell codes that drop the ransomware, SolidBit ransomware is compiled using .NET and is actually a variant of Yashma ransomware, also known as Chaos. It's possible that SolidBit’s ransomware actors are currently working with the original developer of Yashma ransomware and likely modified some features from the Chaos builder later rebranding it as SolidBitthe, aforementioned GitHub account has uploaded this new SolidBit variant disguised as other legitimate applications named “Social Hacker” and “Instagram Follower Bot” however, the account has been taken down.[/subscribe_to_unlock_form]
Summary:
Researchers recently analysed a sample of a new SolidBit ransomware variant that targets users of popular video games and social media platforms. The malware was uploaded to GitHub, where it is disguised as different applications, when an unsuspecting victim runs the application, it automatically executes malicious PowerShell codes that drop the ransomware, SolidBit ransomware is compiled using .NET and is actually a variant of Yashma ransomware, also known as Chaos. It's possible that SolidBit’s ransomware actors are currently working with the original developer of Yashma ransomware and likely modified some features from the Chaos builder later rebranding it as SolidBitthe, aforementioned GitHub account has uploaded this new SolidBit variant disguised as other legitimate applications named “Social Hacker” and “Instagram Follower Bot” however, the account has been taken down.[emaillocker id="1283"]

Dropped ransom note by SolidBit ransomware
References:
The following reports contain further technical details:
[/emaillocker]