
CrazyHunter Ransomware
CrazyHunter is a ransomware campaign targeting healthcare that weakens endpoint defenses and escalates privileges before encrypting systems at scale.

Enter the world of Rhysida Ransomware: A deep dive into one of the most formidable advanced persistent threats (APTs) to date. Using a unique cryptographic approach, it employs a combination of a 4096-bit RSA key and the ChaCha20 algorithm. This strategy makes it stand out in its ability to encrypt and sequester vast data volumes, posing substantial challenges for even the most experienced IT specialists.
Since its discovery in May 2023, Rhysida Ransomware's campaign has shown a discerning targeting matrix, reaching sectors from manufacturing to governmental infrastructures. The threat actors behind the threat maintain a robust operational security (OpSec), but they've also exhibited a flair for deception. Known to impersonate a "cyber-security team", operators have a dual threat strategy: feigning network compromise alerts and presenting deceptive solution offers, while concurrently threatening data exfiltration and public disclosure.
Breaking down the inner workings of Rhysida:
Combatting this malware requires a blend of vigilant threat hunting and agile threat intelligence. Cyborg Security's HUNTER Platform is tailored for challenges like Rhysida, offering an array of threat hunting packages.
Haven't delved into HUNTER yet? Explore our community and access a plethora of resources designed to thwart Rhysida threats.
.
GET THE FREE HUNT PACKAGES!
CHECK OUT OTHER EMERGING THREATS >

CrazyHunter is a ransomware campaign targeting healthcare that weakens endpoint defenses and escalates privileges before encrypting systems at scale.

DevMan Ransomware is a newly emerging ransomware operation observed in 2025 that has been assessed as a derivative of the DragonForce ransomware family.

Gootloader resurfaced with enhanced capabilities, building on the multi-stage loader malware first seen in 2020.
Stay informed with our weekly executive update, sending you the latest news and timely data on the threats, risks, and regulations affecting your organization.