threatintel
actor tracker
IOC pivot
ioc · sha-256

02e9f0fbb7f3acea4fcf155dc7813e15c1c8d1c77c3ae31252720a9fa7454292

?? · UnknownRansomHubconfidence · high

RansomHub Windows encryptor sample published in Symantec's August 2024 analysis tying the family back to its Knight / Cyclops origins. Sample uses Curve25519 with intermittent encryption as described in CISA AA24-242A.

family
RansomHub
first seen
Jul 31, 2024
publisher
Symantec
source citation