blacknevas
Ransomware Group Profile
Overview
BlackNevas is a ransomware group first observed in November 2024, believed to be derived from the Trigona ransomware family, targeting telecommunications, manufacturing, medical, and legal industries primarily in Asia-Pacific, the UK, Italy, and Lithuania using double-extortion with a dual AES/RSA encryption scheme.
Dark Web Infrastructure (1)
ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion
Activity Timeline
First SeenUnknown
Last SeenUnknown
Leak Sites1
Quick Actions