About
Aggregated threat-intel descriptionBlackNevas is a ransomware group first observed in November 2024, believed to be derived from the Trigona ransomware family, targeting telecommunications, manufacturing, medical, and legal industries primarily in Asia-Pacific, the UK, Italy, and Lithuania using double-extortion with a dual AES/RSA encryption scheme.
Sectors: Technology, Manufacturing, Consumer Services · Countries: US, TR, ES
Recent victims
View all →Found by ThreatCluster
1 total from our crawlListed on this group's leak site and not present in the aggregated feeds.
DLS
Aug 29, 2026