💰💣
ALPHV Security Incident
late 2021
1461 days ago
Resolved
Incident Overview
Situation Description
ALPHV, a new ransomware operation written in Rust, emerged in late 2021 and operates as a ransomware-as-a-service (RaaS) program utilizing double-extortion tactics.
Event Types
Ransomware
Malware / Destructive Attack
Industry Sector
OtherGeographic Scope
GlobalImpact Analysis
Event Types (2 identified)
Ransomware
Malware / Destructive Attack
Financial Impact
$0 USDRecords Affected
0Data Types Compromised
PII (Personally Identifiable Information)
Intellectual Property
Credentials
Operational / System Data
Primary Impacts
Financial Loss
Data Exposure
Operational Disruption
Reputational Damage
Key Decisions Made
ALPHV operators advertised the new ALPHV-ng (New Generation) RaaS partner program.; ALPHV affiliates were prohibited from targeting countries in the Commonwealth of Independent States (CIS) region, China, Taiwan, Hong Kong, and Turkey.; Affiliates not performing any activity for two weeks would have their accounts frozen and subsequently deleted.
Technical Analysis
Attack Method
Unknown
Threat Actor Attribution
ALPHV
BlackCat
Additional Information
Quick Facts
- Company:
- ALPHV
- Date:
- late 2021
- Status:
- Resolved
- Decision Maker:
- nan
- Position:
- nan
- Published:
- 6/05/2022
Source Information
Original Query
FBI public statements on ALPHV/Blackcat decryption tool effectiveness for victimsTimeline
Information Published
6/05/2022
Incident Occurred
late 2021 (1461 days ago)
Status: Resolved
Estimated resolution based on age