monitor_heart
Breach Monitoring
Breach Monitoring News Feed
Real-time tracking of threat actors, active data leaks, and cybersecurity incidents across the globe.
Quicklock
groups
Victims: 0
Quoter
groups
Victims: 0
Ra Group
groups
Victims: 161
Rabbit Hole
groups
Victims: 0
Radar
groups
Victims: 23
Radiant Group
groups
Victims: 8
Ragnarlocker
groups
Victims: 123
Ragnarok
According to Bleeping Computer, the ransomware is used in targeted attacks against unpatched Citrix servers. It excludes Russian and Chinese targets using the system's Language ID for filtering. It also tries to disable Windows Defender and has a number of UNIX filepath references in its strings. Encryption method is AES using a dynamically generated key, then bundling this key up via RSA.
groups
Victims: 1
Ralord
groups
Victims: 21
Ramp
groups
Victims: 0
Rancoz
groups
Victims: 6
Ranion
groups
Victims: 0