monitor_heart Breach Monitoring

Breach Monitoring News Feed

Real-time tracking of threat actors, active data leaks, and cybersecurity incidents across the globe.

Quicklock

groups Victims: 0
Quoter

groups Victims: 0
Ra Group

groups Victims: 161
Rabbit Hole

groups Victims: 0
Radar

groups Victims: 23
Radiant Group

groups Victims: 8
Ragnarlocker

groups Victims: 123
Ragnarok

According to Bleeping Computer, the ransomware is used in targeted attacks against unpatched Citrix servers. It excludes Russian and Chinese targets using the system's Language ID for filtering. It also tries to disable Windows Defender and has a number of UNIX filepath references in its strings. Encryption method is AES using a dynamically generated key, then bundling this key up via RSA.

groups Victims: 1
Ralord

groups Victims: 21
Ramp

groups Victims: 0
Rancoz

groups Victims: 6
Ranion

groups Victims: 0