Blacknevas is a ransomware group emerged in November 2024, known for double-extortion tactics.
Analyst brief
Blacknevas, also tracked as Trial Recovery, is a ransomware group first observed in November 2024, likely derived from the Trigona ransomware family. They employ double-extortion tactics, targeting sectors such as retail, technology, healthcare, and manufacturing across the United States, Turkey, Italy, and Oman. The group utilizes a dual AES/RSA encryption scheme for their operations. Defenders should focus on robust offline backup strategies, network segmentation, and enforcing multi-factor authentication on critical systems to mitigate this threat.
blacknevas
Trial Recovery
activecrime
BlackNevas is a ransomware group first observed in November 2024, believed to be derived from the Trigona ransomware family, targeting telecommunications, manufacturing, medical, and legal industries primarily in Asia-Pacific, the UK, Italy, and Lithuania using double-extortion with a dual AES/RSA encryption scheme.