ArcusMedia is a ransomware group first publicly documented in June 2024, characterized by its implementation of a double extortion model that involves both data encryption and exfiltration. The group operates with an organized structure, demanding substantial cryptocurrency ransoms from its victims. Its operational approach includes targeting diverse sectors and leveraging specific methods for initial network compromise, while continuously refining its encryption techniques to enhance ransomware payloads and evade detection.
United Arab EmiratesArgentinaAustriaAustraliaBosnia and HerzegovinaBangladeshBulgariaBrazilCanadaSwitzerland
Sectores atacados
Healthcare (1)
Sectores objetivo (SOCRadar)
Construction of BuildingsFood ManufacturingOther Information ServicesMonetary Authorities-Central BankSoftware PublishersEnterprises & HoldingAccommodationManufacturingConstructionPublic Administration