Skip to content
skopnix
← adversaries
Crime

synack

ransomware.liverefreshed 2026-09-15

sigil

Analyst brief

SynAck is a sophisticated ransomware operation first spotted in 2017, known for using hybrid ECIES encryption and the Doppelganging process injection technique to evade detection; in August 2021 the group rebranded as El_Cometa, transitioning to a full RaaS model and releasing master decryption keys for prior victims.

Take it with you
References
Early access

Track synack on the wire.

Early access opens the actor API and MCP server first — and an alert every time this adversary lands on the wire. One email when it's ready.

bot-protected