cryptbb logo

cryptbb

1 incidentes 1 paises 0 sectores ransomware RU Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
CryptBB is a ransomware group that first appeared by June 2023, primarily motivated by financial gain through data encryption and extortion. The group is assessed with high confidence to be of Russian origin and has been observed utilizing complex encryption algorithms and aggressive negotiation tactics, often demanding high ransom payments from its victims. CryptBB distinguishes itself by employing double extortion, threatening to publicly release stolen data if ransom demands are not met. The group's ransomware payload typically appends random extensions to encrypted files, modifies the victim's desktop wallpaper, and generates a ransom note to guide victims on payment. Intelligence suggests that CryptBB's ransomware may be related to or based on the LockBit 3.0 ransomware, having potentially separated from the larger LockBit group at the beginning of 2023.
Tecnicas MITRE
T1486, T1069, T1071, T1082, T1059

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

Russia (1)

Paises objetivo (SOCRadar)

CanadaIndiaPolandUnited States

Sectores objetivo (SOCRadar)

Construction of BuildingsOther Information ServicesEnterprises & HoldingManufacturingConstructionPublic AdministrationEducational ServicesWholesale TradeRepair&MaintenanceRestaurants

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com