ransomcartel
2 incidentes
1 paises
1 sectores
ransomware RU Ultimo: 2026-06-29
Ransom Cartel is a ransomware-as-a-service (RaaS) operation that first emerged around December 2021. The group's activities gained significant attention due to its highly aggressive double extortion tactics, which include not only encrypting data and threatening to publish stolen information on a leak site, but also threatening to send sensitive data to victims' partners, competitors, and news outlets to maximize reputational damage. Ransom Cartel exhibits notable code similarities and technical overlaps with the REvil ransomware, leading to speculation that its operators had access to earlier REvil source code after REvil's disappearance. While the group shares characteristics with other ransomware groups, its specific and aggressive public shaming strategy helps distinguish it. The operation was reportedly founded by Maksim Silnikau, a Belarusian-Ukrainian national.
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
Paises objetivo (SOCRadar)
Canada
Germany
France
United Kingdom
Italy
United States
Sectores atacados
Software (1)
Sectores objetivo (SOCRadar)
Energy & Utilities ConstructionManufacturingWholesale TradeFinanceProfessional&Technical ServicesEducational ServicesHealthCare & Social AssistancePublic AdministrationOil & Gas
URLs nuevas detectadas en IntelTracker