BlackKingdom Ransomware
- First seen
- 2020-03-01 00:00:00
- Malware type
- ransomware
- Family
- Malware family
- Profile updated
- 2026-07-07 13:44:19
Targeted industries: education-and-nonprofits government-and-public-sector healthcare-and-pharmaceutical
Targeted regions: country_code:us country_code:ca country_code:gb
Context
BlackKingdom is a ransomware family that emerged in early 2020. It is known for targeting a variety of sectors including education, government, and healthcare, primarily in the US, Canada, and UK. The malware encrypts files and demands a ransom payment for decryption keys.
Reports & references
- news.sophos.com — The Ransomware Threat Intelligence Center (report)
- advanced-intel.com — Adversarial Perspective Advintel Breach Avoidance Through Monitoring Initial Vulnerabilities (report)
- Trend Micro — Proxylogon A Coinminer A Ransomware And A Botnet Join The Part (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Blackkingdom Ransomware (report)
- id-ransomware.blogspot.com — Blackkingdom Ransomware (report)
- Kaspersky — 102873 (report)
- blog.redteam.pl — Black Kingdom Ransomware (report)
- news.sophos.com — Black Kingdom (report)