Red Charon
0 incidentes
0 paises
0 sectores
apt CN Ultimo: -
Red Charon refers to a ransomware group identified in August 2025 as 'Charon ransomware', which employs advanced persistent threat (APT)-style techniques in its operations. This group is distinguished by its use of sophisticated methods, including DLL sideloading and process injection, typically associated with nation-state actors. While operating as a financially motivated ransomware entity, its tactics and potential linkages suggest an origin within China. The group's primary objective is financial gain through data exfiltration followed by encryption, leveraging double extortion tactics. It individualizes its ransom demands with custom notes for each victim, indicating targeted and carefully planned attacks.