Ransomware & Extortion · Ransomware
Pay2Key Re-emerges; Bearlyfy Escalates Ransomware Campaign Pro‑Ukraine group Bearlyfy has executed over 70 attacks on Russian companies and now uses a custom Windows ransomware named GenieLocker. Rapid, low‑preparation intrusions have driven larger ransom demands and sustained extortion and sabotage.
4 sources · Mar 27
Timeline Sources Mar 27 The Hacker News
Bearlyfy Hits Russian Firms with Custom GenieLocker Ransomware
Bearlyfy launched 70+ attacks since 2025 using GenieLocker ransomware, targeting Russian firms, driving high ransom payments.
original Mar 26 The Record from Recorded Future
Pro-Ukraine hacker group Bearlyfy targets Russian companies with custom ransomware
A pro-Ukrainian hacker group known as Bearlyfy has carried out more than 70 cyberattacks against Russian companies over the past year and is now escalating its campaign with newly developed ransomware tools, researchers have found.
original Mar 26 Infosecurity Magazine
Iran-Linked Pay2Key Ransomware Group Re-Emerges
Halcyon and Beazley Security track the return of Iranian ransomware group Pay2Key
original Part of the PlainSec briefing for 2026-03-28
Every edition of this story: Pay2Key Re-emerges; Bearlyfy Escalates Ransomware Campaign
Ransomware & Extortion · Ransomware
Pay2Key Re-emerges; Bearlyfy Escalates Ransomware Campaign Pro‑Ukraine group Bearlyfy has executed over 70 attacks on Russian companies and now uses a custom Windows ransomware named GenieLocker. Rapid, low‑preparation intrusions have driven larger ransom demands and sustained extortion and sabotage.
4 sources · Mar 27
Timeline Sources Mar 27 The Hacker News
Bearlyfy Hits Russian Firms with Custom GenieLocker Ransomware
Bearlyfy launched 70+ attacks since 2025 using GenieLocker ransomware, targeting Russian firms, driving high ransom payments.
original Mar 26 The Record from Recorded Future
Pro-Ukraine hacker group Bearlyfy targets Russian companies with custom ransomware
A pro-Ukrainian hacker group known as Bearlyfy has carried out more than 70 cyberattacks against Russian companies over the past year and is now escalating its campaign with newly developed ransomware tools, researchers have found.
original Mar 26 Infosecurity Magazine
Iran-Linked Pay2Key Ransomware Group Re-Emerges
Halcyon and Beazley Security track the return of Iranian ransomware group Pay2Key
original Part of the PlainSec briefing for 2026-03-28
Every edition of this story: Pay2Key Re-emerges; Bearlyfy Escalates Ransomware Campaign