The Red CryptoApp group uses shaming tactics to pressure victims

April 10, 2024
Red CryptoApp Threat Group Fraud Alert Ransomware

A new ransomware group called Red CryptoApp, or Red Ransomware group, causes massive concern in cybersecurity as it uses unconventional tactics. Based on reports, this newly discovered ransomware group uses a “wall of shame” as part of its strategy to publicly shame victims so they can pressure them into complying with their demands.

Unlike many ransomware groups that prefer to operate discreetly and privately with their victims, Red CryptoApp operators have taken a different approach. Researchers stated that the group established a “wall of shame” where they publicly list the names of companies they have successfully targeted.

The primary objective of this strategy is to embarrass and force victims into paying the ransom so they can immediately remove their names from the list.

 

The Red CryptoApp is a mysterious threat group that allegedly started earlier this year.

 

Investigations about the Red CryptoApp have uncovered some secrets after its recent activities, but the exact origins of the group remain unclear. Still, some researchers believe the group started its operations in February 2024.

Other research groups have noticed similarities between Red CryptoApp’s ransom notes and those used by the Maze ransomware gang in 2020. Still, whether Red Ransomware Group is a Maze variant that stopped operating in November 2020 is uncertain.

The confirmed technique used by Red CryptoApp is file encryption tactics that would lock victims out of their data. If the ransomware operators successfully compromise its system, the files will have a .REDCryptoApp extension.

Regarding targets, the United States appears to be the group’s primary focus since researchers have verified five victims. Other countries affected include Denmark, India, Spain, Italy, Singapore, and Canada.

Furthermore, the industries that are the most susceptible to the ransomware group’s attack, including software and manufacturing, although education, construction, hospitality, and IT sectors have also experienced attempted attacks from the group.

The threat posed by this group should prompt individuals and organisations to prioritise the integrity of their cybersecurity measures to protect against such campaigns and similar threats. These preventive measures include implementing robust security protocols, regularly backing up data, and educating staff about potential threats.

By staying knowledgeable about these threats and taking proactive steps to enhance cybersecurity, individuals and businesses can lessen the adverse effects of falling victim to ransomware attacks like Red CryptoApp.

About the author

Leave a Reply