Satanlockv2 was a short-lived ransomware group that emerged in July 2025 and ceased operations within the same month, distinguishing itself by abruptly shutting down and publicly leaking all stolen data rather than negotiating or providing decryptors. The group quickly claimed attacks against numerous organizations across various sectors, though a significant portion of its listed victims were duplicates from other ransomware groups, suggesting potential shared infrastructure or relisting of previously compromised networks. Operating for only a few months, Satanlockv2 pursued financial gain through its ransomware activities.
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.