Matanbuchus 3.0 Malware Analysis: New Features and Ransomware Links
First seen 4 Dec 2025, 02:42 UTC
•
•87% similarity
•43.2
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Matanbuchus 3.0, a C++-based downloader offered as Malware-as-a-Service since 2020, was identified in July 2025. This version introduces Protobuf-based serialization, ChaCha20 encryption, and enhanced anti-analysis techniques. It has been linked to ransomware operations and allows threat actors to deploy additional payloads and execute shell commands.
ThreatCluster AI