Also known as: Agrius, Pink Sandstorm, AMERICIUM, Agonizing Serpens, BlackShadow
Other
Active Since
2024
MITRE ID
G1030
Techniques
22
[Agrius](https://attack.mitre.org/groups/G1030) is an Iranian threat actor active since 2020 notable for a series of ransomware and wiper operations in the Middle East, with an emphasis on Israeli targets.(Citation: SentinelOne Agrius 2021)(Citation: CheckPoint Agrius 2023) Public reporting has linked [Agrius](https://attack.mitre.org/groups/G1030) to Iran's Ministry of Intelligence and Security (MOIS).(Citation: Microsoft Iran Cyber 2023)
No victims recorded in ransomware.live for this group.