Uptime Hamster: 10d 22h 58mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza cryptbb

cryptbb

2 incidentes 2 paises 0 sectores ransomware RU Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
CryptBB is a ransomware group that first appeared by June 2023, primarily motivated by financial gain through data encryption and extortion. The group is assessed with high confidence to be of Russian origin and has been observed utilizing complex encryption algorithms and aggressive negotiation tactics, often demanding high ransom payments from its victims. CryptBB distinguishes itself by employing double extortion, threatening to publicly release stolen data if ransom demands are not met. The group's ransomware payload typically appends random extensions to encrypted files, modifies the victim's desktop wallpaper, and generates a ransom note to guide victims on payment. Intelligence suggests that CryptBB's ransomware may be related to or based on the LockBit 3.0 ransomware, having potentially separated from the larger LockBit group at the beginning of 2023.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / onionupcripuglupv3bsqnbt5ruu5lgwrwoaojscwhuoccbmbzmcidft5kiccqd.onioncryptbb
DLS / leak siteupransomware.anggipradana.comRansomware Group: cryptbb
Tecnicas MITRE
T1486, T1069, T1071, T1082, T1059
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1) Russia (1)

Paises objetivo (SOCRadar)

CanadaIndiaPolandUnited States

Sectores objetivo (SOCRadar)

Construction of BuildingsOther Information ServicesEnterprises & HoldingManufacturingConstructionPublic AdministrationEducational ServicesWholesale TradeRepair&MaintenanceRestaurants

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com