SinobiSinobi

Also known as: Sinobi

Known aliases
1

Profile

Sinobi is a financially motivated ransomware group that employs data theft and extortion as primary tactics, operating a public-facing leak portal to pressure victims during ransom negotiations. The group utilizes techniques such as phishing, credential compromise, and exploitation of unpatched vulnerabilities for initial access, followed by data exfiltration using tools like RClone. Sinobi ransomware employs Curve-25519 and AES-128-CTR for file encryption, making recovery impossible without the attacker's private key. The group has been linked to significant breaches across various sectors, including automotive, legal, and nonprofit organizations.

Aliases· 1

Sinobi

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
SintaLocker
Software
ShinoLocker
Software
Shujin
Actor
RansomHub
Software
ShinigamiLocker
Actor
Coinbase Cartel
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.