Uptime Hamster: 10d 10h 16mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Amelia Ransomware

Amelia Ransomware

0 incidentes 0 paises 0 sectores ransomware Global Ultimo: -
Ver en IntelTracker → APTTrail →
Amelia Ransomware is a financially motivated threat actor that emerged in November 2022, characterized by its observed targeting of open Remote Desktop Protocol (RDP) ports for initial access. This group is closely associated with Vohuk ransomware, sharing similar ransom notes and potentially originating from the same source, with suspicions that it may leverage modified leaked Conti ransomware source code. While no specific origin country is definitively identified, its technical similarities suggest a connection to broader ransomware development trends. The group's primary objective is financial gain through data encryption and subsequent ransom demands, distinguishing itself by its apparent rapid development, evidenced by a documented version 1.61 appearing shortly after its initial surfacing, and its close ties to other ransomware variants.

Actores similares

lockbit3ransomware · 2016qilinransomware · 1933akiraransomware · 1524playransomware · 1268clopransomware · 1254lockbit2ransomware · 1002ransomhubransomware · 842incransomransomware · 832alphvransomware · 731dragonforceransomware · 580
Tecnicas MITRE
T1210, T1566, T1021.001, T1083, T1133, T1486
Tipo
ransomware
Pais origen
Global
Motivacion
-
Impacto
36
Actualizado
Fri, 19 Ju

Paises objetivo (SOCRadar)

GermanySpainFranceUnited KingdomItalyJapanKorea, Republic ofRussian FederationUnited States

Sectores objetivo (SOCRadar)

Energy & Utilities ConstructionManufacturingRetailTransportation&WarehousingInformation ServicesFinanceProfessional&Technical ServicesEnterprises & HoldingEducational Services