Apos is a ransomware group that emerged in April 2024, distinguishing itself as a data-broker or leak-only operation rather than employing traditional file-encryption. This group focuses on data exfiltration, threatening to leak or sell stolen information as their primary means of extortion. Unlike many ransomware operations, Apos has not been observed to conduct file encryption. Reporting indicates that its activity tapered off after a few incidents, potentially suggesting it was a short-lived operation or a one-time campaign, and its technical details, such as specific encryption algorithms or ransom notes, remain largely undocumented publicly. The group is sometimes referred to as Apos Security.
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.
Construction of BuildingsOther Information ServicesSoftware PublishersAir TransportationManufacturingPublic AdministrationEducational ServicesWholesale TradeData Processing ServicesSpace & Defense