New Ransomware Strains From Leaked Conti Code
ID: e7407cc7-b4f5-5f98-9b7b-8d6600e8dbde
STIX ID: report--e7407cc7-b4f5-5f98-9b7b-8d6600e8dbde
Feed Name: Cyble Blog
Threat Score
This Cyble report describes several emerging ransomware strains built from leaked Conti source code—ScareCrow, BlueSky, Meow, and a new group called Putin Team—providing technical analysis of the Putin binary (SHA256 provided), observed behaviors (ChaCha20 encryption, .PUTIN extension, file enumeration, mutex, use of Telegram and onion sites for extortion), multiple IOC hashes, and recommended defensive measures.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
