Threat Actor Spotlight: RagnarLocker Ransomware

RagnarLocker ransomware is one of the most active ransomware threats in the cyber security landscape today. It has been used to target a wide variety of organizations, from small businesses to large corporations. The ransomware has been known to encrypt data and demand a ransom payment. It has also been used to exfiltrate sensitive data, which can be used to further extortion.

RagnarLocker ransomware is believed to have been first discovered in May 2020. It is believed to have been created by a threat actor, or group of actors, known as Ragnar Security. The ransomware is a variant of the REvil family of ransomware, and it is believed to have been created using a combination of open-source tools.

The ransomware has been known to be distributed via malicious emails, malicious links, and exploit kits. Once the ransomware has been installed on a system, it begins to encrypt the data on the system and then demand a ransom payment. The ransom amount can vary, but it is typically around $10,000.

RagnarLocker ransomware is a serious threat that should not be taken lightly. It is important for organizations to have a strong security posture, including keeping systems up to date and patching vulnerabilities, in order to protect against these types of threats. Organizations should also have a backup and recovery plan in place in case of a ransomware attack. This will ensure that data is not lost and that it can be recovered if need be.

