48
Techniques
8
Toolsets
2
CVEs Referenced
1
KEV Entries
CISA Known Exploited
About BlackByte

BlackByte is a ransomware threat actor operating since at least 2021. BlackByte is associated with several versions of ransomware also labeled BlackByte Ransomware. BlackByte ransomware operations initially used a common encryption key allowing for the development of a universal decryptor, but subsequent versions such as BlackByte 2.0 Ransomware use more robust encryption mechanisms. BlackByte is notable for operations targeting critical infrastructure entities among other targets across North America.

View MITRE record ↗

Techniques by Tactic (48)
Toolsets (8)
🐛
Malware · Windows
🐛
Malware · Windows
🐛
Malware · Linux, macOS, Windows
🐛
Exbyte S1179
Malware · Windows
🔧
AdFind S0552
Tool · Windows
🔧
Arp S0099
Tool · Linux, Windows, macOS
🔧
Mimikatz S0002
Tool · Windows
🔧
PsExec S0029
Tool · Windows
CVEs Referenced (2 · 1 CISA KEV)
CVE-2014-7169View full details on NVDKEV
CVE-2016-6662View full details on NVD
↑