MadLiberator is a ransomware group known for randomized ransom demands and unpredictable encryption patterns.
Analyst brief
MadLiberator is a ransomware group that emerged in mid-2024, known for erratic behavior such as randomized ransom demands and unpredictable encryption patterns. It targets government entities, including the Italian Ministry of Culture. Key TTPs involve file encryption, data exfiltration, and the use of a data leak site to post exfiltrated files. Defenders should pay attention to anomalous encryption behavior, instability in ransom demands, and potential exposure of sensitive stolen data.
madliberator
crime
MadLiberator is a ransomware group that emerged in mid-2024, known for erratic behavior including randomized ransom demands and unpredictable encryption patterns, targeting government entities including the Italian Ministry of Culture and using a data leak site to post exfiltrated files.