Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 21:08:49 UTC Home > List all groups > List all tools > List all groups using tool CryWiper Tool: CryWiper Names CryWiper Category Malware Type Wiper Description (BleepingComputer) A previously undocumented data wiper named CryWiper is masquerading as ransomware, but in reality, destroys data beyond recovery in attacks against Russian mayor's offices and courts. CryWiper was first discovered by Kaspersky this fall, where they say the malware was used in an attack against a Russian organization. Information Last change to this tool card: 27 December 2022 Download this tool card in JSON format All groups using tool CryWiper Changed Name Country Observed Unknown groups _[ Interesting malware not linked to an actor yet ]_ 1 group listed (0 APT, 0 other, 1 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=72e7a2af-d9f4-4449-abf3-91f6689c7db4 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=72e7a2af-d9f4-4449-abf3-91f6689c7db4 Page 1 of 1