Ransomware & Extortion · Ransomware

Pay2Key Re-emerges; Bearlyfy Escalates Ransomware Campaign

Pro‑Ukraine group Bearlyfy has executed over 70 attacks on Russian companies and now uses a custom Windows ransomware named GenieLocker. Rapid, low‑preparation intrusions have driven larger ransom demands and sustained extortion and sabotage.

4 sources · Mar 27

Timeline

Sources

Part of the PlainSec briefing for 2026-03-28

Every edition of this story: Pay2Key Re-emerges; Bearlyfy Escalates Ransomware Campaign