#Pay2Key

Just Another Blue TeamerLeeArchinal@ioc.exchange
2025-07-10

Good day everyone!

Morphisec released an insightful report covering Iranian Cyber Warfare that is targeting the West and other enemies of Iran. The APT involved is #Pay2Key, "an Iranian-backed ransomware-as-as-service (RaaS) operation" that is linked to the Fox Kitten APT group and "closely tied to the well-known #Mimic ransomware."

Normally I call out behaviors and TTPs related but for this report I want to call out the completeness of the report. Not only does it provide more than enough technical details to make actionable in any environment but it also provides a TON of threat intel to support their claims giving the readers and audience an idea if they would be a target or not. It is a great report and I encourage you all to read it! Enjoy and Happy Hunting!

Pay2Key’s Resurgence: Iranian Cyber Warfare Targets the West
morphisec.com/blog/pay2key-res

Intel 471 Cyborg Security, Now Part of Intel 471 #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday

2025-07-09
2020-12-14

Вымогатели Pay2Key похитили и опубликовали данные дочерней компании Intel #Intel, #Pay2Key securitylab.ru/news/514803.php twitter.com/SecurityLabnews/st

🖱🛠👉👕👈 SOSOrdinet 🎣🖥️🐛 🗞️SOSOrdinet@social.targaryen.house
2020-11-17
2020-11-10

Новый вымогатель Pay2Key способен шифровать сети корпораций всего за час #Pay2Key, #кибератаки securitylab.ru/news/513872.php twitter.com/SecurityLabnews/st

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst