Blackout

First seen
2021-07-15 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:47:26

Targeted industries: financial-services healthcare-and-pharmaceutical retail-and-hospitality technology-and-telecommunications

Context

Blackout is a type of ransomware targeting multiple sectors by encrypting files and demanding ransom payments for decryption keys. It often spreads through phishing emails and exploits vulnerabilities to gain access to systems.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Nim_Blackout_Auto (yara-rule)

Reports & references

  • ransomlook.io — Blackout (report)
  • watchguard.com — Blackout (report)

External references