Rhysida

Rhysida — Threat Actor Profile | ObscureIQ
ObscureIQ Threat Intelligence · Actor Profile

RhysidaConfidence: High

Ransomware (RaaS)

Motivation: Financial

9Attributed Breaches
HighAttribution Confidence
Ransomware (RaaS)Actor Type

Overview

Uses double extortion against education, manufacturing, IT, government, and healthcare, per CISA reporting. Some vendors note a possible overlap with Vice Society, but that relationship should be framed as suspected.

Tactics, Targeting & TTPs

Targeting: healthcare, education, government, manufacturing, IT. Relationship claims should be caveated.

Source

Attribution draws on public threat-intelligence reporting · Established (multi-source). Primary source →

Were you exposed in one of these breaches?

Check your exposure privately, or request a tailored exposure audit.

Request Consultation