osiris
Osiris is a ransomware-as-a-service operation first observed in November 2025 that uses a Bring Your Own Vulnerable Driver (BYOVD) technique to disable endpoint detection tools before deploying hybrid ECC + AES-128-CTR encryption; Symantec researchers linked its operators to former INC ransomware affiliates.
| Name | Country | Sector | Date |
|---|---|---|---|
| American Vanguard | US | Manufacturing | 2026-01-09T23:59:38.468812+00:00 |
| The Araneta Group | PH | Hospitality and Tourism | 2025-12-18T09:29:57.951971+00:00 |
Data from ransomware.live