AvosLocker is a RaaS ransomware group targeting Windows, Linux, and VMware ESXi systems.
Analyst brief
AvosLocker is a ransomware group that was active from July 2021 to approximately May 2023, targeting Windows, Linux, and VMware ESXi environments. They primarily focused on the education, manufacturing, and healthcare sectors, with the US accounting for roughly 72% of victims. Operating as a RaaS model, they encrypt data and demand ransom. Defenders should prioritize securing ESXi environments, enforcing multi-factor authentication, and maintaining robust offline backup strategies.
avoslocker
crime
AvosLocker is the ransomware payload of the Avos RaaS group, active from July 2021 to approximately May 2023, targeting education, manufacturing, and healthcare sectors on Windows, Linux, and VMware ESXi environments, with the US accounting for ~72% of victims.