Scworld
Emergence of Vect RaaS Operation Targeting Organizations in Brazil and South Africa
First seen 5 Feb 2026, 06:48 UTC
•
•39.0
Export
Article Content
Browse articles
The newly identified Vect ransomware-as-a-service (RaaS) operation has compromised organizations in Brazil and South Africa. Launched in December 2025, Vect employs C++-based malware utilizing the ChaCha20-Poly1305 AEAD encryption algorithm and SafeMode execution to target Windows, Linux, and VMware ESXi systems.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
EU Sanctions Russia Over Ongoing Cyber Espionage Campaign
EU Sanctions Vitaly Kovalev, Ransomware Leader of Trickbot Group
$15M Grinex Cyberattack Halts Operations Amid Allegations of Foreign Intelligence Involvement
Conti Ransomware Group's Internal Messages Leaked Amid Ukraine Conflict
Critical RCE Vulnerability in Veeam Backup Exposes Organizations to Attacks