BlackKingdom Ransomware

First seen
2020-03-01 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:44:19

Targeted industries: education-and-nonprofits government-and-public-sector healthcare-and-pharmaceutical

Targeted regions: country_code:us country_code:ca country_code:gb

Context

BlackKingdom is a ransomware family that emerged in early 2020. It is known for targeting a variety of sectors including education, government, and healthcare, primarily in the US, Canada, and UK. The malware encrypts files and demands a ransom payment for decryption keys.

Reports & references

  • news.sophos.com — The Ransomware Threat Intelligence Center (report)
  • advanced-intel.com — Adversarial Perspective Advintel Breach Avoidance Through Monitoring Initial Vulnerabilities (report)
  • Trend Micro — Proxylogon A Coinminer A Ransomware And A Botnet Join The Part (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Blackkingdom Ransomware (report)
  • id-ransomware.blogspot.com — Blackkingdom Ransomware (report)
  • Kaspersky — 102873 (report)
  • blog.redteam.pl — Black Kingdom Ransomware (report)
  • news.sophos.com — Black Kingdom (report)

External references