Ransomware Group

Babuk

Also known as: Babuk Locker, Babyk

Status: inactive • First seen 2021-0150+ known victims

Babuk attacked the DC Police and then fell apart. Their code was leaked and used by others.

Overview

Babuk attacked DC Police before source code was leaked and group disbanded.

Target Industries

Government, Healthcare, Transportation

How They Attack

  • Phishing
  • RDP exploitation
  • Credential theft

Notable Victims

DC Metropolitan Police (2021)

Is your business exposed?

How to Protect Against Babuk

  1. 1.

    Watch for variants using leaked code

MITRE ATT&CK Techniques

T1566, T1486, T1021

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required