Malware
Ransomware-as-a-Service (RaaS)
Also known as: RaaS, Affiliate ransomware
Definition
A criminal business model in which ransomware operators rent their malware and infrastructure to affiliates who carry out attacks and share the proceeds.
Examples
- LockBit affiliates encrypting enterprise networks for a share of the ransom.
- ALPHV/BlackCat providing a Rust-based encryptor and leak site to recruited operators.
Related terms
Ransomware
Malware that encrypts a victim's data or locks systems and demands payment in exchange for restoring access.
Doxware
Malware that threatens to publish stolen sensitive data unless a ransom is paid, combining extortion with data-leak blackmail.
Advanced Persistent Threat (APT)
Advanced Persistent Threat (APT) — definition coming soon.
Supply Chain Attack
An attack that compromises a trusted third-party software, hardware, or service provider in order to reach its downstream customers.
Incident Response
The organised process of preparing for, detecting, analysing, containing, eradicating, and recovering from cyber security incidents, then capturing lessons learned.
Backdoor
A covert mechanism that bypasses normal authentication or access controls to give an attacker future entry to a system.