Skip to content
RansomHouse Ransomware Upgrades to Multi-Layered Encryption

RansomHouse Ransomware Upgrades to Multi-Layered Encryption

First seen 22 Dec 2025, 13:58 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

RansomHouse, a ransomware-as-a-service operation, has upgraded its encryption method from a single-phase to a multi-layered dual-key architecture. This change enhances the complexity of its extortion tactics, providing threat actors with stronger leverage during negotiations. The upgrade was detailed by Palo Alto Networks' threat intelligence team.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 184d ago How this analysis works

More articles in this cluster (2)

Following this threat?

Track RansomHouse, Mario and Askul Corporation in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed