A wiper module has been introduced to the Anubis ransomware-as-a-service (RaaS) operation’s file-encrypting software, which eliminates targeted files and prevents recovery even in the event that the ransom is paid.
Anubis is a relatively new RaaS that was initially discovered in December 2024 but increased in activity at the start of the year. It should not be confused with the same-named Android virus that has a ransomware module.
An affiliate program was announced by the operators on the RAMP forum on February 23. According to a KELA investigation at the time, Anubis gave ransomware affiliates an 80% cut of the money they made. A 60% cut was offered to data extortion associates, while a 50% cut was offered to initial access brokers.
Only eight victims are listed on Anubis’ extortion website on the dark web at the moment, suggesting that once trust in the technological element is increased read more about Anubis ransomware adds wiper to destroy files beyond recovery.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
