top of page
Blackbyte
Name
Category
Type
Targeted OS
Description
Information
Blackbyte
Malware
Ransomware
Not enough information
BlackByte is a Ransomware operation that began targeting corporate victims worldwide in July 2021. The first findings regarding the group emerged after victims sought help decrypting their files. They are a Russian-based ransomware group operating in a ransomware-as-a-service (RaaS) model and leverage double-extortion to force their victims into payment. In their first year, they caught the attention of the Federal Bureau of Investigation (FBI) and the US Secret Service (USS). These agencies released a joint advisory cautioning against BlackByte.
https://socradar.io/dark-web-profile-blackbyte-ransomware/#:~:text=They%20are%20a%20Russian%2Dbased,US%20Secret%20Service%20(USS).
NIL
Malpedia
Alienvault OTX
Playbook
NIL
CISA
Other Information
Mitre
Mitre Techniques
Mitre Techniques Navigator Link
NIL
['T1595', 'T1190', 'T1053', 'T1059', 'T1505', 'T1112', 'T1027', 'T1055', 'T1070', 'T1562', 'T1003', 'T1012', 'T1016', 'T1018', 'T1021', 'T1560', 'T1105', 'T1567', 'T1486', 'T1490', 'T1082']
bottom of page