AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← Catalog
REFERENCEPUBLIC INTELLIGENCE

Babuk - S0638

Name of ATT&CK software | [Babuk](https://attack.mitre.org/software/S0638) is a Ransomware-as-a-service (RaaS) malware that has been used since at least 2021. The operators of [Babuk](https://attack.mitre.org/software/S0638) employ a "Big Game Hunting" approach to targeting major enterprises and operate a leak site to post stolen data as part of their extortion scheme.(Citation: Sogeti CERT ESEC B

Reference details

Primary displayed family label
Babuk - S0638
Source context
2023/05/ra-group-ransomware.json
First reported
2023-08-22 04:00 UTC
Last reported
2023-08-22 04:00 UTC
Catalog updated
2026-10-08 05:42 UTC

Source family labels

Babuk - S0638

Tags

misp:galaxy-name="Malware"misp:galaxy-type="mitre-malware"misp-galaxy:mitre-malware="Babuk - S0638"

Published indicators

Network addresses are displayed in defanged form.

No file hashes or network indicators were published in this record.

Source observations

Cisco Talos published IOCs ↗

Evidence class
provider reported
Source family label
Babuk - S0638
Source confidence
Not reported
Observed
2023-08-22 04:00 UTC
Retrieved
2026-10-08 05:42 UTC

Research references