PEAR (Pure Extraction And Ransom) is a ransomware group known for double extortion tactics.
Analyst brief
PEAR (Pure Extraction And Ransom) is a ransomware-focused criminal group presenting itself as a highly disciplined private team. They target a wide range of sectors including healthcare, financial services, manufacturing, and agriculture primarily in the United States, Canada, Singapore, France, Norway, and Jamaica. While specific TTPs and tools are not provided, the group's name suggests a likely double extortion tactic involving data theft and encryption. Defenders should focus on phishing awareness, timely patching of vulnerabilities, and network segmentation, especially for entities within the targeted sectors and countries.
pear
Pure Extraction And Ransom
activecrime
Pure Extraction And Ransom (PEAR) Team is the community of highly responsible and strictly disciplined members. We are a private team and have nothing common with any other threat actors. We've been monitoring this field for a long-long time. So, we understand all the processes and know well how it all works.