logo

Dark Web Profile: Vect Ransomware

ID: cef12d4b-47c7-50aa-bc5d-e2f8fe3610d5

STIX ID: report--cef12d4b-47c7-50aa-bc5d-e2f8fe3610d5

Feed Name: SOCRadar Blog

Threat Score
85/100

Date Published: 2026-06-05

Date Updated: 2026-06-05

Author: Ameer Owda

...
...

This report profiles the Vect ransomware RaaS operation that debuted Dec 31, 2025, detailing its low-barrier affiliate program (Monero entry fee, builder for Windows/Linux/ESXi), mass recruitment via BreachForums, partnership with TeamPCP supplying credentials from multiple March 2026 supply-chain compromises, 25 documented global victims across industries, and a technical analysis showing a broken ChaCha20 implementation that renders most encrypted data unrecoverable and makes intrusions operationally equivalent to a wiper; the report concludes with detection, mitigation, and recovery recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.