diff --git a/clusters/ransomware.json b/clusters/ransomware.json index b8f79d58..eca2ed9d 100644 --- a/clusters/ransomware.json +++ b/clusters/ransomware.json @@ -24589,7 +24589,20 @@ }, "uuid": "995c3772-dbda-4a2a-9e28-c47740d599a3", "value": "Maui ransomware" + }, + { + "description": "Lorenz is a ransomware group that has been active since at least February 2021 and like many ransomware groups, performs double-extortion by exfiltrating data before encrypting systems.", + "meta": { + "ransomnotes-refs": [ + "https://marvel-b1-cdn.bc0a.com/f00000000241276/arcticwolf.com/wp-content/uploads/2022/09/Screen-Shot-2022-09-12-at-11.18.04-AM-1024x246.png" + ], + "refs": [ + "https://arcticwolf.com/resources/blog/lorenz-ransomware-chiseling-in/" + ] + }, + "uuid": "d513199e-7f21-43fd-9610-ed708c3f6409", + "value": "Lorenz Ransomware" } ], - "version": 107 + "version": 108 }