royal

Ransomware
Sourceransomware.live

About the group

According to Trendmicro, Royal ransomware was first observed in September 2022, and the threat actors behind it are believed to be seasoned cybercriminals who used to be part of Conti Team One.

Exploited vulnerabilities

No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.

Impact and victims

The group royal has 4 known ransomware victims. See the most affected sectors and countries and recent victims.

4known victims
4in Brazil
3sectors hit
Most attacked sectors
Professional Services2
Energy & Utilities1
Manufacturing1
Most affected countries
🇧🇷 Brasil4
Recent victims
Ancora - Sistemas de FixacaoManufacturing · BR · 2023-02-20
Grupo Ibiapina LtdaProfessional Services · BR · 2022-12-27
Aegea Group companiesEnergy & Utilities · BR · 2022-12-23
Rech Informatica LtdaProfessional Services · BR · 2022-12-23

royal uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →