Grief

First seen
2021-05-01 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:49:36

Targeted industries: government-and-public-sector healthcare-and-pharmaceutical

Context

Grief is a ransomware strain that utilizes CAPTCHA pages to impede automated analysis and indexing. It primarily targets sectors like government and healthcare, employing extortion tactics to demand payment.

Reports & references

  • heimdalsecurity.com — Doppelpaymer Gets A Rebranding (report)
  • ransomlook.io — Grief (report)
  • bleepingcomputer.com — Grief Ransomware Linked To Evil Corp Hackers (report)
  • CISA — Aa21 243A (report)
  • treasury.gov — Jy0333 (report)
  • Trend Micro — Grief Ransomware (report)

External references