Settra Ransomware Variant Deployed in Recent Attacks
6 Articles
6 Articles
Settra Ransomware Uses MeshAgent RMM for Persistence | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware - National Cyber Security Consulting
Summary Settra is a newly identified ransomware variant first observed in June 2026 that gains access through compromised VPNs or stolen credentials. The threat actors deploy MeshAgent RMM for persistence and use Bring Your Own Vulnerable Driver (BYOVD) techniques to evade security controls. After establishing access, they encrypt files, disable recovery options, and clear Windows […] Thank you for subscribing to our RSS feed!
New SETTRA Ransomware Uses MeshAgent RMM and BYOVD to Encrypt Windows Systems
Settra ransomware is emerging as a serious threat to Windows networks after investigators linked it to two recent intrusions involving remote-management software and recovery-blocking actions. The operation encrypts files, leaves victims with ransom notes, and tries to make both investigation and restoration more difficult. Public reporting indicates that the people behind Settra have gained entry […]
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium





