Fog (Expanded) Active
Fog ransomware expanding beyond education to broader targets.0
Total Victims
2024-11-01
First Seen
N/A
Last Seen
7
Known TTPs
16.1d
Avg Delay
0
Negotiations
ONION URLS
xql562evsy7njcsngacphc2erzjfecwotdkobn3m4uxu2gtqh26newid.onion
xbkv2qey6u3gd3qxcojynrt4h5sgrhkar6whuo74wo63hijnn677jnyd.onion
TOOLS
Compromised VPN
FILE EXTENSIONS
.fog
ACTIVITY TIMELINE
TOP SECTORS
TOP COUNTRIES
ACTIVITY HEATMAP
| Date | Victim Name | Country | Sector | Status |
|---|---|---|---|---|
| No victims recorded | ||||
| Technique ID | Technique Name | Tactic |
|---|---|---|
| T1140 | Deobfuscate/Decode Files | Defense Evasion |
| T1049 | System Network Connections Discovery | Discovery |
| T1567.002 | Exfiltration to Cloud Storage | Exfiltration |
| T1486 | Data Encrypted for Impact | Impact |
| T1491.001 | Internal Defacement | Impact |
| T1529 | System Shutdown/Reboot | Impact |
| T1080 | Taint Shared Content | Lateral Movement |
No YARA rules
No IoCs
No ransom notes