arcusmedia

Ransomware
Sourceransomware.live

Vexday analysis

Arcus Media é uma operação de ransomware-as-a-service que surgiu em maio de 2024, adotando o modelo de dupla extorsão com criptografia ChaCha20 combinada a RSA-2048 e recrutando afiliados por meio de um processo de verificação baseado em indicações. O grupo afirma ter comprometido mais de 50 vítimas em setores como manufatura, saúde, varejo e serviços empresariais em escala global. No Brasil, são registradas 19 vítimas conhecidas atribuídas a essa operação.

Exploited vulnerabilities

No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.

Impact and victims

The group arcusmedia has 20 known ransomware victims. See the most affected sectors and countries and recent victims.

20known victims
20in Brazil
8sectors hit
Most attacked sectors
Professional Services5
Technology3
Healthcare2
Agriculture and Food Production2
Retail & E-Commerce2
Manufacturing2
Other1
Transportation1
Most affected countries
🇧🇷 Brasil20
Recent victims
Power MoendasOther · BR · 2026-07-25
EB FarmacuticaHealthcare · BR · 2025-08-12
STANDBYTERetail & E-Commerce · BR · 2025-05-30
HYPERNOVA TELECOMTechnology · BR · 2025-03-12
ItapesegManufacturing · BR · 2025-03-03
EasconProfessional Services · BR · 2025-02-01
Utilissimo TransportesTransportation · BR · 2025-02-01
TechnicoManufacturing · BR · 2025-02-01
Engenet InformaticaTechnology · BR · 2024-12-29
Enge Ilha ConstruçãoProfessional Services · BR · 2024-12-29
ICORetail & E-Commerce · BR · 2024-12-02
Petropolis Pet ResortProfessional Services · BR · 2024-10-20
Solutii SistemasTechnology · BR · 2024-09-24
FrigocenterAgriculture and Food Production · BR · 2024-09-24
Colégio Nova DimensãoEducation · BR · 2024-05-18

arcusmedia uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →