Threat Actors · Play
Techniques
26
Software
9
Tactics
14
Aliases
0
Description
Play is a ransomware group that has been active since at least 2022 deploying Playcrypt ransomware against the business, government, critical infrastructure, healthcare, and media sectors in North America, South America, and Europe. Play actors employ a double-extortion model, encrypting systems after exfiltrating data, and are presumed by security researchers to operate as a closed group.(Citation: CISA Play Ransomware Advisory December 2023)(Citation: Trend Micro Ransomware Spotlight Play July 2023)
Tactic Coverage
Techniques Used (26)
Registration Required
Showing 5 of 26 results
Sign up for free to see the full dataset, track CVEs, and get weekly threat digests.
Software Used (9)