Snatch Ransomware: Evolving Threat and Defense Strategies

Threat Advisories

Snatch Ransomware: Evolving Threat and Defense Strategies

Threat Level
Attack Report

For a detailed threat advisory, download the pdf file here

Summary

Snatch ransomware is a ransomware-as-a-service (RaaS) variant that was first discovered in 2018. It is known for its ability to reboot devices into Safe Mode, where many security protections are disabled, before encrypting files. Snatch also uses double extortion tactics, threatening to publish stolen data on the internet if the victim does not pay the ransom.

To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.