icefire
RansomwareAbout the group
IceFire is a ransomware group first observed in 2022 that expanded to Linux in early 2023 by exploiting a vulnerability in IBM Aspera Faspex (CVE-2022-47986), targeting media and entertainment organizations in Turkey, Iran, Pakistan, and the UAE using double-extortion tactics.
Exploited vulnerabilities 1
CVEs this group is known to exploit, per MITRE ATT&CK. Ordered by real-world severity.
CVE-2022-47986CRITICALEPSS 100%KEV leak site
icefire uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.
Explore the AI Autonomous Pentest →