top of page

Blackbyte

Name

Category

Type

Targeted OS

Description

Information

Blackbyte

Malware

Ransomware

Not enough information

BlackByte is a Ransomware operation that began targeting corporate victims worldwide in July 2021. The first findings regarding the group emerged after victims sought help decrypting their files. They are a Russian-based ransomware group operating in a ransomware-as-a-service (RaaS) model and leverage double-extortion to force their victims into payment. In their first year, they caught the attention of the Federal Bureau of Investigation (FBI) and the US Secret Service (USS). These agencies released a joint advisory cautioning against BlackByte.

https://socradar.io/dark-web-profile-blackbyte-ransomware/#:~:text=They%20are%20a%20Russian%2Dbased,US%20Secret%20Service%20(USS).

NIL

Malpedia

Alienvault OTX

Playbook

NIL

CISA

Other Information

Mitre

Mitre Techniques

Mitre Techniques  Navigator Link

NIL

['T1595', 'T1190', 'T1053', 'T1059', 'T1505', 'T1112', 'T1027', 'T1055', 'T1070', 'T1562', 'T1003', 'T1012', 'T1016', 'T1018', 'T1021', 'T1560', 'T1105', 'T1567', 'T1486', 'T1490', 'T1082']

bottom of page