IOC pivotioc · sha-256
af9f95497b8503af1a399bc6f070c3bbeabc5aeecd8c09bca80495831ae71e61
?? · UnknownBlackSuitconfidence · high
SHA256 of 1.exe, the BlackSuit encryptor identified by FBI in threat-response activity through July 2024 and published in Table 10 of the August 7, 2024 update to joint FBI/CISA advisory AA23-061A - the rebrand of Royal ransomware (active September 2022 through June 2023).
- family
- BlackSuit
- first seen
- Aug 6, 2024
- publisher
- CISA