DeadLock Ransomware Employs Blockchain for Evasion Tactics

DeadLock Ransomware Employs Blockchain for Evasion Tactics

First seen 14 Jan 2026, 17:51 UTC TheregisterInfosecurity-MagazineBankinfosecurityBinanceDecrypt.Co+3 81% similarity 36.2

Article Content

Browse articles
ThreatCluster

The DeadLock ransomware operation, first identified in July 2025, utilizes blockchain-based smart contracts to evade detection and manage proxy server addresses. This group has targeted various organizations while maintaining a low profile and does not follow the traditional double extortion model. Researchers from Group-IB highlight the innovative technical methods employed by DeadLock, which may influence future ransomware tactics.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story