PULSE NAME
REvil, Sodinokibi & Prophet Chakras
WHITE msudosos 2026-05-13 Modified: 2026-05-13
512
IOCs
HIGH VOLUME
REvil / Sodinokibi and CVE-2018-8543 which affects remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. [NIST] Sodinokibi, also known as REvil, is a sophisticated ransomware-as-a-service (RaaS) variant known for its devastating impact on targeted systems and widespread distribution. It poses a significant threat to cybersecurity, encrypting files on infected systems and demanding ransom payments from victims in exchange for decryption keys. [Cybersight]. MGM- Reference guest stays Jan1,25.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (14 / 512 total)
All FileHash-MD5 FileHash-SHA256 URL domain hostname FileHash-SHA1 Mutex IPv4 CVE
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 096dedae4a80b9f8a01a16e4c5bae52e 2026-05-13
FileHash-MD5 69ef93b41d5bafc3c9e89d4543d62efb 2026-05-13
FileHash-MD5 6e7c996d0785e8e22e6034f90017fc17 2026-05-13
FileHash-MD5 933a7339ceab553bdc23fbf34dfb475e 2026-05-13
FileHash-MD5 d4e9b2a93bd16ded60c2dc452b539312 2026-05-13
FileHash-MD5 175b3c55c43004becab7d75fd49eea62 2026-05-13
FileHash-MD5 21ba709282442aaf42d874166711d4fc 2026-05-13
FileHash-MD5 c88f20b29592f2107a629e815db6afae 2026-05-13
FileHash-MD5 3e974b7347d347ae31c1b11c05a667e2 2026-05-13
FileHash-MD5 613dc98a6cf34b20528183fbcc78a8ee 2026-05-13
FileHash-MD5 7d4c2211f3279201599f9138d6b61162 2026-05-13
FileHash-MD5 8ea320dff9ef835269c0355ca6850b33 2026-05-13
FileHash-MD5 b488bdeeaeda94a273e4746db0082841 2026-05-13
FileHash-MD5 e402d34e8d0f14037769294a15060508 2026-05-13