Summary: 2025/05/06 20:26

First reported date: 2020/09/22
Inquiry period : 2025/05/05 20:26 ~ 2025/05/06 20:26 (1 days), 2 search results

지난 7일 기간대비 신규 트렌드를 보이고 있습니다.
악성코드 유형
BlackCat Ransomware WannaCry PlugX LockBit BlackSuit ShadowPad RedCurl WannaCryptor BianLian 도 새롭게 확인됩니다.
공격기술 Campaign Phishing Social Engineering 도 새롭게 확인됩니다.
기관 및 기업 United States Microsoft India Australia United Kingdom Canada ESET Google China Taiwan Paloalto Fortinet Check Point 도 새롭게 확인됩니다.
기타 EDR Victim Malware Vulnerability Report 등 신규 키워드도 확인됩니다.

ALPHV, also known as BlackCat or Noberus, is a ransomware family that is deployed as part of Ransomware as a Service (RaaS) operations. ALPHV is written in the Rust programming language and supports execution on Windows, Linux-based operating systems (Debian, Ubuntu, ReadyNAS, Synology), and VMWare ESXi. ALPHV is marketed as ALPHV on cybercrime forums, but is commonly called BlackCat by security researchers due to an icon of a black cat appearing on its leak site. ALPHV has been observed being deployed in ransomware attacks since November 18, 2021.

ALPHV can be configured to encrypt files using either the AES or ChaCha20 algorithms. In order to maximize the amount of ransomed data, ALPHV can delete volume shadow copies, stop processes and services, and stop virtual machines on ESXi servers. ALPHV can self-propagate by using PsExec to remote execute itself on other hosts on the local network.  Ref.

 * 최근 뉴스기사 Top3:
    ㆍ 2025/05/06 Defending Against UNC3944: Cybercrime Hardening Guidance from the Frontlines
    ㆍ 2025/05/06 Ransomware Tool Matrix Project Updates: May 2025


참고로 동일한 그룹의 악성코드 타입은 WannaCry Sodinokibi Phobos 등 79개 종이 확인됩니다.

Trend graph by period


Related keyword cloud
Top 100

# Trend Count Comparison
1BlackCat 2 ▲ new
2United States 2 ▲ new
3EDR 2 ▲ new
4Microsoft 2 ▲ new
5Victim 2 ▲ new
6Ransomware 2 ▲ new
7Campaign 2 ▲ new
8Malware 2 ▲ new
9Vulnerability 2 ▲ new
10Report 2 ▲ new
11India 1 ▲ new
12powershell 1 ▲ new
13SMB 1 ▲ new
14WMI 1 ▲ new
15VMware 1 ▲ new
16Australia 1 ▲ new
17United Kingdom 1 ▲ new
18Canada 1 ▲ new
19Windows 1 ▲ new
20MFA 1 ▲ new
21arrest 1 ▲ new
22Update 1 ▲ new
23Phishing 1 ▲ new
24VPN 1 ▲ new
25Tor 1 ▲ new
26Education 1 ▲ new
27ESET 1 ▲ new
28Google 1 ▲ new
29WannaCry 1 ▲ new
30Social Engineering 1 ▲ new
31PlugX 1 ▲ new
32LockBit 1 ▲ new
33China 1 ▲ new
34Taiwan 1 ▲ new
35Zero Trust 1 ▲ new
36BlackSuit 1 ▲ new
37KillAV 1 ▲ new
38MimiKatz 1 ▲ new
39ShadowPad 1 ▲ new
40RedCurl 1 ▲ new
41Paloalto 1 ▲ new
42팔로알토 1 ▲ new
43Palo Alto 1 ▲ new
44Fortinet 1 ▲ new
45WannaCryptor 1 ▲ new
46RTM 1 ▲ new
47Check Point 1 ▲ new
48BianLian 1 ▲ new
49Mandi 1 ▲ new
Special keyword group
Top 5

Malware Type
Malware Type

This is the type of malware that is becoming an issue.


Keyword Average Label
BlackCat
2 (16.7%)
Ransomware
2 (16.7%)
WannaCry
1 (8.3%)
PlugX
1 (8.3%)
LockBit
1 (8.3%)
Attacker & Actors
Attacker & Actors

The status of the attacker or attack group being issued.


Keyword Average Label
Attack technique
Technique

This is an attack technique that is becoming an issue.


Keyword Average Label
Campaign
2 (50%)
Phishing
1 (25%)
Social Engineering
1 (25%)
Country & Company
Country & Company

This is a country or company that is an issue.


Keyword Average Label
United States
2 (13.3%)
Microsoft
2 (13.3%)
India
1 (6.7%)
Australia
1 (6.7%)
United Kingdom
1 (6.7%)
Malware Family
Top 5

A malware family is a group of applications with similar attack techniques.
In this trend, it is classified into Ransomware, Stealer, RAT or Backdoor, Loader, Botnet, Cryptocurrency Miner.

Additional information

No data
No data
No data
No data
Beta Service, If you select keyword, you can check detailed information.