Nibiru
- First seen
- 2020-05-14 00:00:00
- Malware type
- trojan, ransomware
- Family
- Malware family
- Profile updated
- 2026-07-07 15:13:37
Targeted industries: financial-services government-and-public-sector energy-and-utilities
Targeted regions: country_code:us country_code:gb country_code:de
Context
Nibiru is a sophisticated piece of malware primarily targeting financial institutions and governmental organizations. It is known for its trojan capabilities that facilitate unauthorized access and data theft, as well as its ransomware features that can encrypt victim systems.
Detection coverage
- 1 YARA rules
Detection rules
- DITEKSHEN_MALWARE_Win_Nibiru (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Nibiru (report)
- Cisco Talos — Nibiru Ransomware (report)