Discovery Enum
- Invoke-ShareFinder
SafePay is a financially motivated, private ransomware operation first observed in late 2024.
Profile source: Mallory opens in a new tabSafePay
SafePay is a financially motivated, private ransomware operation first observed in late 2024. It conducts double-extortion attacks, stealing victim data before encrypting systems and threatening publication through its leak site. The operation states that it does not offer a ransomware-as-a-service affiliate program. SafePay has claimed victims globally, with reporting indicating particular concentration in Germany, Central Europe, North America, and the United States. Its victims include organizations in healthcare, government services, technology, manufacturing, and other business sectors.
In a documented intrusion, SafePay gained access by password spraying a VPN service, maintained low activity for weeks, obtained domain-administrator privileges, enumerated accessible network shares, collected and compressed data, and exfiltrated it before encryption. The operators searched for backup infrastructure, encrypted backup resources, and deleted Volume Shadow Copies to impair recovery. They also used direct telephone contact to pressure a victim during extortion.
The SafePay encryptor is a custom C-based Windows ransomware strain. It uses asynchronous I/O, supports configurable partial encryption, and uses AES-CBC on systems supporting AES-NI or ChaCha20 otherwise; Curve25519 protects per-file key material. Observed encryption occurred within Windows virtual machines, and reporting at the time of analysis found no evidence of a hypervisor-compatible VMware ESXi encryptor. SafePay has been assessed as an intermediate-sophistication operation, with its intrusions relying substantially on publicly available tools and conventional enterprise attack techniques.
Reported operators
The SafePay ransomware group is a relatively new group, first appearing on our radar in November 2024. The group follows a double-extortion scheme, both exfiltrating data and encrypting it on victim machines using their own SafePay ransomware.
MITRE ATT&CK
Reporting
Security reporting has documented LameHug as the first publicly known malware to integrate a large language model, marking an escalation in the use of generative AI within malicious tooling. The development indicates that AI can be incorporated into malware operations rather than being used solely to create phishing content or assist attackers outside the payload. Separately, ransomware victim listings reached 894 organizations in July 2026, according to NCC Group data cited by ZDNET, with industrial organizations comprising nearly one-third of listed victims. The reporting also identified the first documented fully agentic AI ransomware attack chain, attributed to JadePuffer, amid a surge led by groups including The Gentlemen and Qilin; however, organizations should treat leak-site claims cautiously because some actors, including the new CRPxO RaaS operation, may inflate or fabricate victim listings.
Marlboro-Chesterfield Pathology has agreed to settle a class action lawsuit tied to a January 2025 ransomware attack attributed to the SafePay group, after attackers gained unauthorized access to its network and obtained files containing sensitive patient information. The pathology provider reported to the U.S. Department of Health and Human Services Office for Civil Rights that 235,911 individuals were affected, with compromised data including names, dates of birth, Social Security numbers, and protected health information. The proposed settlement, which received preliminary court approval, provides reimbursement of documented fraud- or identity-theft-related losses of up to $1,000 per class member, a $10 alternative cash payment for certain people whose Social Security numbers were exposed, and one year of credit monitoring and identity theft protection. Marlboro-Chesterfield Pathology denied wrongdoing and liability, and no ransom payment details were disclosed, while a final fairness hearing is scheduled for October 12, 2026.
Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.