PULSE NAME
REvil, Sodinokibi & Prophet Chakras
WHITE msudosos 2026-05-13 Modified: 2026-05-13
512
IOCs
HIGH VOLUME
REvil / Sodinokibi and CVE-2018-8543 which affects remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. [NIST] Sodinokibi, also known as REvil, is a sophisticated ransomware-as-a-service (RaaS) variant known for its devastating impact on targeted systems and widespread distribution. It poses a significant threat to cybersecurity, encrypting files on infected systems and demanding ransom payments from victims in exchange for decryption keys. [Cybersight]. MGM- Reference guest stays Jan1,25.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (7 / 512 total)
All FileHash-MD5 FileHash-SHA256 URL domain hostname FileHash-SHA1 Mutex IPv4 CVE
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA256 4be415c196067f67e61a9ce6502186281b1c6296fbce722b585e2d401277fe42 2026-05-13
FileHash-SHA256 02ab2124ac50a77342fbe9b347ea77a245d73763541a7bdffeecc380763b5b38 2026-05-13
FileHash-SHA256 15f044061e4ec088532e177eb513bf110fa1547a70763bb52a4d76c59232f3ad 2026-05-13
FileHash-SHA256 16ee329826c692a10545e99783836d2be7f74e6ea31db354d3a710ca5538424e 2026-05-13
FileHash-SHA256 cd34aaf41372c659eba60dcfa1310f43267e7c9c32021acf379883cb57650bb8 2026-05-13
FileHash-SHA256 cded87aab4968a8764af00a2b4f27ecf5f9893d6235c40adb532e68f918cfed8 2026-05-13
FileHash-SHA256 e86a9030db332755d1ee6e3068239f18ceea9715752788a994b4dcef0b103ac2 2026-05-13