RansomHub (Payload) (a3044fb5-3aae-4590-b589-cc88bf0d1f34)
This object represents the techniques associated with the payload binary used in attacks associated with the RansomHub ransomware-as-a-service ("RaaS") operation. The RansomHub gang is suspected of leaking victim data exfiltrated in attacks by other groups, but researchers have also observed an apparent original ransomware payload linked to the group.[BroadcomSW June 5 2024][The Record RansomHub June 3 2024] This payload displays a high degree of code similarity with Knight ransomware, whose source code was offered for sale in cybercriminal forums in February 2024.[BroadcomSW June 5 2024]