Close

Get in Touch

Contact us to learn more about our elite cybersecurity services and industry-leading technologies.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Close
Breachquest

Emergency Incident Assistance

Is your network under attack? Get in touch with a
BreachQuest Specialist right away with this form.

You can also reach us by calling our 24/7 hotline.

+1 888 409 5811

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

You can also reach us by calling our 24/7 hotline.

+1 888 409 5811

IceFire

IceFire is a harmful malware infection that emerged in the first half of March 2022 that encrypts victims’ files and renders them inaccessible. Those infected are compelled to pay the ransom, usually paid in Bitcoin or Monero, requested by the group in exchange for their data. If paid, the victim is given a decryption key that can be used to restore their files. IceFire uses the AES+RSA encryption algorithm, generating a unique decryption key that the group keeps on a remote private server. Even with the payment, the group gives no guarantee that the key will be delivered or that the stolen data will not be used elsewhere. The group has concentrated its attacks on English-speaking users, where numerous attacks have been reported around the world.

Go Back Go to Glossary index
Share this article:

Sign up for our newsletter to get more industry news and insights.

Related Resources

How Do I Decrypt IceFire ransomware?

Learn more

Remove IceFire ransomware

Learn more