Ransomware Update – 2025-08-12

[Content by Gemini 2.5]

Latest Ransomware News and New File Extensions

  • Interlock:

    • New Encrypted File Extension: Not specified.
    • Attack Methods: Cyberattack causing disruption of systems and services; exfiltration and leaking of sensitive city and resident data.
    • Targets: City of Saint Paul (US municipal government), MBM Intellectual Property Law (Canadian law firm).
    • Decryption Status: No known method.
    • Source: Saint Paul cyberattack linked to Interlock ransomware gang
  • DarkBit:

    • New Encrypted File Extension: Not specified.
    • Attack Methods: Linked to the MuddyWater APT group.
    • Targets: General victims (specifics not named in the report).
    • Decryption Status: Decryptable. Cybersecurity firm Profero has cracked the encryption, allowing for free data recovery for victims.
    • Source: MuddyWater’s DarkBit ransomware cracked for free data recovery
  • BlackSuit (Royal):

    • New Encrypted File Extension: Not specified.
    • Attack Methods: Attacks targeting critical infrastructure.
    • Targets: Critical infrastructure sectors.
    • **Dec