GOLD BURLAP
0 incidentes
0 paises
0 sectores
apt RU Ultimo: -
Aliases: CYBORG SPIDER
GOLD BURLAP, also known as CYBORG SPIDER and Mespinoza, is a financially motivated cybercriminal group that emerged in October 2018. The group is responsible for the development and operation of the Pysa (Mespinoza) ransomware, which they first used to encrypt victim files with the .pysa extension in December 2019. Unlike some other ransomware groups, GOLD BURLAP does not operate Pysa as a Ransomware-as-a-Service (RaaS) model. The group distinguishes itself through its cross-platform Pysa ransomware, developed in both C++ and Python, and its consistent use of "name and shame" tactics via a dedicated leak site called "Pysa's Partners" to pressure victims into paying ransoms. While primarily financially driven, the group is suspected with unknown confidence to have ties to Russia. GOLD BURLAP consistently targets high-value organizations across various sectors, including finance, healthcare, and education.
Sectores objetivo (SOCRadar)
Construction of BuildingsManufacturingConstructionPublic AdministrationEducational ServicesWholesale TradeEnergy & Utilities InsuranceAircraft ManufacturingChemical&Pharmaceutical Manufacturing