Cybersecuritynews
Cephalus Ransomware Targets Windows Networks with Double Extortion
First seen 11 Feb 2026, 19:30 UTC
•
•100% similarity
•32.9
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Cephalus is a Go-based ransomware strain that has been linked to victim activity since June 2025, with public awareness rising in August 2025. It employs a double-extortion tactic, stealing sensitive data before encrypting files, impacting operational continuity for affected organizations. Victims face threats of data leaks alongside operational downtime.
ThreatCluster AI
How this analysis works
Timeline
2025-06-01
Victim activity linked to Cephalus ransomware begins
2025-08-01
Wider public reporting on Cephalus ransomware
2026-02-11
Cephalus ransomware reported by multiple cybersecurity news outlets