Pennywise
- First seen
- 2022-05-01 00:00:00
- Malware type
- ransomware
- Family
- Malware family
- Last IoC activity
- 2026-07-17 23:27:30
- Profile updated
- 2026-07-07 15:52:56
Targeted industries: financial-services healthcare-and-pharmaceutical energy-and-utilities
Context
Pennywise is a ransomware family known for encrypting files on victim's systems, demanding payment for decryption keys. It targets multiple industries, causing operational disruptions and financial loss.
Detection coverage
- 1 YARA rules
Detection rules
- SEKOIA_Infostealer_Win_Pennywise_Mar23 (yara-rule)