Threat Arsenal & Malware Profiles
Detailed technical directory of landmark malware strains, destructive wipers, and cybercrime payloads documented in DOJ indictments, CISA technical alerts, and forensic reverse engineering reports.
Key Facts
- Catalog of primary destructive wipers, ICS sabotage code, and ransomware families cited in federal indictments.
- Technical reverse engineering profiles detail execution mechanics, anti-analysis, and forensic indicators.
- Cross-referenced against MITRE ATT&CK techniques and real prosecution evidentiary exhibits.
- Focuses on nation-state military tools (GRU, SVR) and high-impact cybercrime syndicates.
NotPetya / EternalPetya
Irreversible MBR overwriting and raw NTFS file table destruction. Caused over $10B in global collateral damages.
KillDisk / BlackEnergy 3
Disconnected 30 substations in Western Ukraine, cutting electrical power to 225,000 citizens in mid-winter.
AcidRain / AcidPour
Bricked tens of thousands of satellite terminals across Europe and knocked out 5,800 German wind turbines on the morning of the Russian invasion of Ukraine.
SUNBURST (Solorigate)
Stealthy espionage campaign targeting U.S. Treasury, Dept of Homeland Security, and Fortune 500 tech firms.
BlackPOS / Kaptoxa
Exfiltrated 40M payment cards from Target and 56M payment cards from Home Depot.
ALPHV / BlackCat Ransomware
Crippled Change Healthcare ($3.3B loss), MGM Resorts ($100M loss), and dozens of enterprise targets.