Japan

cactus

The CACTUS ransomware is said to have emerged around March 2023. The group became known for exploiting vulnerabilities to gain initial access and maintain a presence within the organization's infrastructure.<br> <br> There is little known information about the ransomware group, except that it emerged on the mentioned date and, following encryption, a text file named 'cAcTuS.readme.txt' would be created. Additionally, encrypted files were altered to the '.cts1' extension,…

First seen 2023-07-03 · Last seen 2025-03-17 · 2 Japan claims

Tactics: Initial Access, Execution, Persistence, Defense Evasion, Credential Access, Discovery, Lateral Movement, Exfiltration, Command and Control, Impact, Resource Development

Cached from ransomware.live. 2026-10-01 PT. Leak sites are not linked.

kyb.com

JP

Discovered: 2025-03-17 <span class="ransom-ago">(18mo ago)</span>

<p>Automotive Parts</p><p>KYB Americas Corporation was established in 1974 and is headquartered in Greenwood, IN, USA. KYB manufactures…

kyb.com

sanyo-shokai.co.jp

JP

Discovered: 2024-06-10 <span class="ransom-ago">(28mo ago)</span>

Download link #1: DESCRIPTIONS: Personal identifying information, financial documents, customer data, engineering information,…

sanyo-shokai.co.jp