logo

Ransomware Tracker (Entry #242): Yashma

ID: 4c6ea89a-2bf3-5645-8512-9a5980e98526

STIX ID: report--4c6ea89a-2bf3-5645-8512-9a5980e98526

Feed Name: WatchGuard Secplicity Blog

Threat Score
65/100

Date Published: 2025-04-01

Date Updated: 2026-05-01

Author: Ryan Estes

...
...

**Yashma (Chaos v6.0) Ransomware Builder** — WatchGuard documents Yashma as a fork of the Chaos v5.0 ransomware builder with minor changes (a CIS-country geographic check and the ability to stop background services); it is believed to be created by Iranian-based actors distinct from the original Chaos authors, and two decryptors are noted as available.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.