Malas is a ransomware group that emerged by April 2023, primarily targeting large enterprises. The group's primary motivation is financial gain through data encryption and extortion. Malas is notably organized and adept at exploiting software vulnerabilities, employing double extortion techniques by threatening to release stolen data in addition to encrypting it, which serves as a distinguishing characteristic of their operations.
Tecnicas MITRE
T1082, T1078, T1486, T1562.001
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.
Construction of BuildingsFood ManufacturingOther Information ServicesSoftware PublishersEnterprises & HoldingAccommodationAir TransportationManufacturingConstructionPublic Administration