Image for post
Image for post

RobbinHood and the Merry Men

Tracking the evolution of the RobbinHood threat group

How to use this article

What is RobbinHood?

Robbin’ the insecure for profit

RobbinHood Version Timeline

Image for post
Image for post
Image for post
Image for post
Image for post
Image for post
Image for post
Image for post

“Living off another land”

RobbinHood’s merry men

Image for post
Image for post

Tracking RobbinHood through Sherwood Forest

Image for post
Image for post

Notes from the Sheriff of Nottingham

Who are the threat group behind RobbinHood ransomware?

Is this a Ransomware as a Service?

Who do the threat group target?

Will the threat group honour a ransom payment?

Are the threat group capable of decrypting data?

Where are the IOCs?

How can I help?

Disclaimer

Acknowledgements

Image for post
Image for post

Brazen plug

Written by

Programming, problem solving, and digital forensics are my hobbies, literature is my passion. I have an Arts degree.

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store