blackbyte-crux

First seen
2022-07-15 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:59:43

Targeted industries: financial-services healthcare-and-pharmaceutical technology-and-telecommunications

Targeted regions: country_code:us country_code:gb country_code:ca

Context

BlackByte-Crux is a ransomware family that has been observed targeting critical infrastructure sectors such as financial services, healthcare, and technology. It encrypts files on compromised systems, demanding a ransom in exchange for decryption keys. Known for its efforts to evade detection, BlackByte has been active in attacks across several Western countries.

Reports & references

  • ransomlook.io — Blackbyte Crux (report)
  • huntress.com — Crux Ransomware (report)
  • itpro.com — Cybersecurity Researchers Have Spotted A Potent New Ransomware Strain Being Used In The Wild (report)
  • securityboulevard.com — New Crux Ransomware Emerges In Three Attacks This Month (report)
  • watchguard.com — Blackbyte Crux (report)

External references