All threat actors

CACTUSPAL

Alert me

A ransomware intrusion cluster associated with Cactus deployments. Public incident reporting describes operators using spam flooding and impersonated IT-support calls to obtain remote access, with tradecraft overlapping actors that previously delivered Black Basta.

Also known as

Cactus

Create a free account to see the reports

Sign in or create a free account to see every report that names CACTUSPAL.

Create free account