arcusmedia

Ransomware
Sourceransomware.live

Vexday analysis

Arcus Media é uma operação de ransomware-as-a-service que surgiu em maio de 2024, adotando o modelo de dupla extorsão com criptografia ChaCha20 combinada a RSA-2048 e recrutando afiliados por meio de um processo de verificação baseado em indicações. O grupo afirma ter comprometido mais de 50 vítimas em setores como manufatura, saúde, varejo e serviços empresariais em escala global. No Brasil, são registradas 19 vítimas conhecidas atribuídas a essa operação.

Exploited vulnerabilities

No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.

Impact and victims

The group arcusmedia has 22 known ransomware victims. See the most affected sectors and countries and recent victims.

22known victims
22in Brazil
8sectors hit
Activity (12 months)
07
09
Most attacked sectors
Professional Services5
Technology3
Manufacturing3
Retail & E-Commerce2
Agriculture and Food Production2
Healthcare2
Other1
Transportation1
Most affected countries
🇧🇷 Brasil22
Recent victims
Pantaneiro CapasManufacturing · BR · 2026-09-27
AKAZZONot Found · BR · 2026-09-19
Power MoendasOther · BR · 2026-07-25
EB FarmacuticaHealthcare · BR · 2025-08-12
STANDBYTERetail & E-Commerce · BR · 2025-05-30
HYPERNOVA TELECOMTechnology · BR · 2025-03-12
ItapesegManufacturing · BR · 2025-03-03
EasconProfessional Services · BR · 2025-02-01
Utilissimo TransportesTransportation · BR · 2025-02-01
TechnicoManufacturing · BR · 2025-02-01
Enge Ilha ConstruçãoProfessional Services · BR · 2024-12-29
Engenet InformaticaTechnology · BR · 2024-12-29
ICORetail & E-Commerce · BR · 2024-12-02
Petropolis Pet ResortProfessional Services · BR · 2024-10-20
Solutii SistemasTechnology · BR · 2024-09-24

arcusmedia uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →