Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Braincipher

Brain Cipher emerged in July 2024. Both Windows and Linux variants are available. Brain Cipher using the leaked build of LockBit Black for their operations. The group suspected to have exploited CVE-2023-28252 (Microsoft Windows CLFS Driver Privilege Escalation Vulnerability). The Ransom demand ranges from $150,000 to $1,00,0000. Demand to be paid with Monero (XMR) cryptocurrency. In 2025, they have shifted their new Negotiation portal to new server with vanity TOR Domain starting with 'brain'.

Victims
44
 
First Discovered
2024-07-01
victim
Last Discovered
2025-10-29
victim
Inactive Since
160
days
Avg Delay
43.5
days
Infostealer
27.5%
victims with domain

View Victims on World Map

View group statistics


Known Locations (8)
Favicon Title Type Available Last Visit Server Info FQDN
favicon BrainCipher Dataleak No 2026-01-12 04:00:15 vkvsgl7lhipjirmz6j5ubp3w3bwvxgcdbpi3fsbqngfynetqtw4w5hyd.onion
favicon Brain Cipher Client Area No 2025-06-01 21:18:17 mybmtbgd7aprdnw2ekxht5qap5daam2wch25coqerrq2zdioanob34ad.onion
favicon BrainCipher Client Area No 2025-11-02 21:00:27 brain4zoadgr6clxecixffvxjsw43cflyprnpfeak72nfh664kqqriyd.onion
favicon BrainCipher Client Area No 2025-06-17 10:30:09 77nrxelcwh47yikvpaz2rvtsten4sen2elybo5r5st6wlxsbitv255qd.onion
favicon BrainCipher Client Area No 2025-06-17 10:30:16 p6wmotxzvg34tdmpwm4beqgrcyp5iys43snkccsahnw74la3k3xx6pad.onion
favicon BrainCipher Storage No 2026-02-01 00:00:11 zktnif5vckhmz5tyrukp5bamatbfhkxjnb23rspsanyzywcrx3bvtqad.onion
favicon Not Found No 2025-12-12 10:00:08 4ldgw2wuidqu5ef3rzx4byonf3y7rdnh43jiw2z4sbtjiwic6gkov7yd.onion
favicon BrainCipher Storage No 2025-06-17 10:30:19 cuuhrxbg52c5agytmtjpwfu7mrs4xtaitc4mukkiy2kqdxeqbcmuhaid.onion

Target (Available)
Top 5 Activity Sectors
  • Business Services 8
  • Manufacturing 7
  • Technology 6
  • Healthcare 3
  • Financial 2
Top 5 Countries
  • US flag United States 8
  • FR flag France 5
  • MX flag Mexico 4
  • ES flag Spain 3
  • IL flag Israel 2

Heatmap (Available)

Ransom Notes (3)

Tools Used (Not Available)

No tools used available.


Vulnerabilities Exploited (0)

No vulnerabilities exploited available.


TTPs Matrix (4)
This information is provided by Crocodyli & Ransomware.live
Execution Defense Evasion Discovery Impact
User Execution Impair Defenses: Disable or Modify Tools File and Directory Discovery Data Encrypted for Impact
  Indicator Removal: File Deletion    

Negotiation Chats (0)

No negotiation chats available.


YARA Rules (0)

No YARA rules available.


Indicators of Compromise (IoCs) (15)
EMAIL 3 MD5 12
Type IOC
email ibrain.support@cyberfear.com
email brain.dataleak@cyberfear.com
email brain.decrypt@cyberfear.com
md5 523c501118ef5d7957ce54aee86d9b1d
md5 9c5698924d4d1881efaf88651a304cb3
md5 448f1796fe8de02194b21c0715e0a5f6
md5 b32a8951fc4c2e4c2d63d17200ca0032
md5 714b31629c37dee57038ca4e52ef65ac
md5 71c109f3bf4da2fc0173b9bcff07e979
md5 41050b2b9f619cdd9916e3bdd5b9f2f9
md5 0da1f4ede654e83241eaad7719a708a0
md5 f94d17b5f232e9cfd2255ca9823cb18a
md5 8b3a45ebb7f2331e90ac57a2a20536fd
md5 8dbd57b042bc63b9ecdc9e3e5506ce85
md5 a0efa7fb6dff1e035510ec1f42e083e4

Victims (44)
Logo
Discovered: 2025-10-29
[AI generated] N/A…
Logo
Discovered: 2025-10-29
[AI generated] N/A…
Logo
Discovered: 2025-10-29
[AI generated] N/A…
Logo
Discovered: 2025-10-20
[AI generated] Oxford County represents the best of both worlds: urban communities full of life, ent…
Logo
Discovered: 2025-10-20
[AI generated] N/A…
Logo
Discovered: 2025-09-16
[AI generated] N/A…
Logo
Discovered: 2025-08-04
[AI generated] N/A…
Logo
Discovered: 2025-07-28
[AI generated] N/A…
Logo
Discovered: 2025-07-25
[AI generated] "Jorgefernandez.es" is a Spain-based company engaged in the distribution of home impr…
Logo
Discovered: 2025-05-05  ·  Attack est.: 2025-02-17
[AI generated] N/A…
Logo
Discovered: 2025-05-05
[AI generated] N/A…
Logo
Discovered: 2025-05-05
[AI generated] D'Decor is a leading home decor company known for its innovative and stylish range of…
Logo
Discovered: 2025-05-05
[AI generated] Ruizre.es is a real estate company based in Valencia, Spain that specializes in prope…
Logo
Discovered: 2025-05-05
[AI generated] Sound Transit, operating under the domain "soundtransit.org", is a mass transit agenc…
Logo
Discovered: 2025-05-05
[AI generated] "Valedolobo.com" is the online platform for the Vale do Lobo resort located in Portug…
Logo
Discovered: 2025-05-05
[AI generated] Edisoft is a Spanish technological company specializing in development and implementa…
Logo
Discovered: 2025-05-05
[AI generated] N/A…
Logo
Discovered: 2024-12-23  ·  Attack est.: 2024-12-13
Provides support and resources for health, financial aid, and social services in Rhode Island.…
Logo
Discovered: 2024-12-18
[AI generated] Modern Dental Group Limited is a global dental service provider headquartered in Hong…
Logo
Discovered: 2024-12-12
[AI generated] Estar Seguros, S.A. is an insurance company that specializes in providing a range of …
Logo
Discovered: 2024-12-12
[AI generated] Cristal y Lavisa S.A. de C.V. is a Mexican company specializing in the production and…
Logo
Discovered: 2024-12-04
[AI generated] Deloitte UK is a leading professional services firm, part of the global Deloitte netw…
Logo
Discovered: 2024-12-03
[AI generated] Royce Corporation is a global trading company specializing in the distribution and ma…
Logo
Discovered: 2024-12-02
[AI generated] G-ONE Auto Parts de México, S.A. de C.V. is a company based in Mexico specializing in…
Logo
Discovered: 2024-11-13
[AI generated] COOPERATIVA TELEFONICA DE CALAFATE LTD. is a telecommunications cooperative based in …
Logo
Discovered: 2024-11-13
[AI generated] G-One Auto Parts de México S.A. de C.V. is a Mexican company specializing in the dist…
Logo
Discovered: 2024-10-29
[IA generated] Berridge Manufacturing Co. specializes in the production of high-quality metal roofin…
Logo
Discovered: 2024-10-28
[IA generated] K&S Tool & Mfg Co. is a company specializing in precision manufacturing and tooling s…
Logo
Discovered: 2024-10-28
[IA generated] Basilio Advogados is a prominent law firm based in Brazil, known for its expertise in…
Logo
Discovered: 2024-10-28
[IA generated] CHRISTODOULOS G. VASSILIADES & CO. LLC is a prominent law firm based in Cyprus, speci…
Logo
Discovered: 2024-09-22
Hanwa Co., Ltd. (Thailand) is a subsidiary of Hanwa Co., Ltd., a Japan-based global trading company.…
Logo
Discovered: 2024-08-29
Réunion des Musées Nationaux-Grand Palais (RMN-GP) is a French cultural institution dedicated to man…
Logo
Discovered: 2024-08-28
Ghanare.com is an online platform dedicated to providing comprehensive real estate services in Ghana…
Logo
Discovered: 2024-08-21
Prof. Bein & Co., accessible via beinlaw.co.il, is a reputable law firm based in Israel. It speciali…
Logo
Discovered: 2024-08-17
Tiendasmacuto.com is an online retail store specializing in outdoor and adventure gear. They offer a…
Logo
Discovered: 2024-08-12
No description available
Logo
Discovered: 2024-08-12
No description available
Logo
Discovered: 2024-07-21
No description available
Logo
Discovered: 2024-07-21
No description available
Logo
Discovered: 2024-07-21
No description available
Logo
Discovered: 2024-07-21
No description available
Logo
Discovered: 2024-07-21
No description available
Logo
Discovered: 2024-07-01
More important than money, only honor.…