Anubis Threat Group Seeks Out Critical Industry Victims
ID: c2ec0b5b-3a07-5343-a7b5-55df4bf2ca4b
STIX ID: report--c2ec0b5b-3a07-5343-a7b5-55df4bf2ca4b
Feed Name: Dark Reading
Date Published: 2025-02-26
Date Updated: 2026-04-21
Author: Kristina Beek, Associate Editor, Dark Reading
Anubis is a newly identified ransomware group active since at least Q4 2024 that leverages RaaS, affiliate programs, and double-extortion to target critical industrial sectors (healthcare and engineering/construction) across multiple countries; researchers observed the group and its actors on cybercrime forums with Russian-language posts and suspect involvement of former affiliates from other ransomware operations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
