moneymessage logo

moneymessage

3 incidentes 2 paises 3 sectores ransomware Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
MoneyMessage is a ransomware group that emerged in March 2023, demanding multi-million dollar ransoms from its victims. The group primarily operates a double extortion model, encrypting data and subsequently threatening to publish stolen sensitive information on a dedicated leak site if ransom demands are not met. A distinguishing characteristic of MoneyMessage is its ransomware variant's tendency not to alter file extensions on encrypted files, instead dropping a plain text ransom note named `money_message.log` in affected directories. The group targets a wide array of organizations globally, focusing on large corporations across various sectors, and is known for its ability to target both Windows and Linux operating systems, including VMware ESXi servers.
Tecnicas MITRE
T1486, T1078, T1566, T1110, T1021

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
2
TTPs unicas
1
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

TTPs observadas

T1566 Phishing

Paises afectados

United Kingdom (1) United States (1)

Paises objetivo (SOCRadar)

ArgentinaAmerican SamoaAustraliaBangladeshCzech RepublicAlgeriaEgyptFranceUnited KingdomIsrael

Sectores atacados

Business Services (1) Public Sector (1) Banking (1)

Sectores objetivo (SOCRadar)

Construction of BuildingsMonetary Authorities-Central BankCredit UnionsHospitalsAccommodationAir TransportationManufacturingConstructionElectrical Equipment, Appliance, and Component ManufacturingPublic Administration

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com

Victimas (2)

Forestdale11 May 2026
Ransomware United Kingdom Business Services
Resumen La alerta de ransomware "Forestdale" fue publicada el 2026-05-11 y está asociada al grupo ciberdelincuental "moneymessage". Este tipo de ataqu…
Family Partnerships of Central Florida28 Jan 2026
Ransomware United States Public Sector
Resumen Family Partnerships of Central Florida, una organización sin fines de lucro que proporciona apoyo a niños con necesidades especiales, ha sido …