Nibiru

First seen
2020-05-14 00:00:00
Malware type
trojan, ransomware
Family
Malware family
Profile updated
2026-07-07 15:13:37

Targeted industries: financial-services government-and-public-sector energy-and-utilities

Targeted regions: country_code:us country_code:gb country_code:de

Context

Nibiru is a sophisticated piece of malware primarily targeting financial institutions and governmental organizations. It is known for its trojan capabilities that facilitate unauthorized access and data theft, as well as its ransomware features that can encrypt victim systems.

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_MALWARE_Win_Nibiru (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Nibiru (report)
  • Cisco Talos — Nibiru Ransomware (report)

External references