Argonauts is a financially motivated ransomware group that emerged in September 2024, operating a double-extortion model. This group encrypts victim data and also exfiltrates sensitive information, leveraging a TOR-based data leak site to publicize victims and pressure them into paying ransoms by threatening to release stolen data. Assessed with moderate confidence to be of Russian origin, Argonauts uses cybercriminal forums to promote its data leaks and manage victim interaction, a practice that defines its early operational phase.
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.