Jan. 15, 2024, 11:40 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Mallox is a Ransomware-as-a-Service (RaaS)


Ransomware-as-a-Service (RaaS) is a cybercrime business model where operators maintain software, websites, infrastructure, and other features needed to conduct ransomware attacks. Affiliates of the RaaS program conduct the attacks and the profits are then shared between the affiliate and the operator. The Mallox ransomware has been active since the middle of 2021.


In this article I share some insights into the incident response that allowed the victim to fully recover from the ransomware attack. I …

affiliate as-a-service attacks back business csirt cybercrime features infrastructure mallox ransomware operators program raas ransomware ransomware attacks service software truesec victim websites

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)