Skip to content

Mindware

Ransomware, potential rebranding of win.sfile.

Profile source: Ransomware.live opens in a new tab

Mindware

Family profile

Ransomware, potential rebranding of win.sfile.

Operational record

1
YARA rules
1
Leak sites
0 available

Reported operators

Threat actors

1 named in public reporting
WIZARD SPIDER

By June 2022, DEV-0237 was still primarily deploying Hive and sometimes Nokoyawa but was seen experimenting with other ransomware payloads, including Agenda and Mindware.

MITRE ATT&CK

Mindware in ATT&CK

1 distinct techniques

We appreciate you

Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.