VECT — Ransomware Profile
VECT is a RaaS group that launched its affiliate program in December 2025 with a five-tier revenue-sharing model and a formal partnership with BreachForums; its VECT 2.0 payload contains a critical encryption flaw that irreversibly destroys files larger than 128 KB rather than encrypting them.IntelFusions coverage (3)
- AI supply chain hack exposed 2,500 companies' secrets 2026-08-11 · AI Security
- Hackers now poison open source packages instead of breaking into vendors 2026-07-31 · Cyber Incidents
- Ransomware crew Vect teams up with supply chain hackers TeamPCP 2026-07-03 · Ransomware
Recent claimed victims
- guesty, LITELLM/TRIVY CAMPAIGN (TEAMPCP) 2026-04-15
- S&PGLOBAL, LiteLLM/Trivy campaign (TeamPCP) 2026-04-15
Vendor research
- VECT: Ransomware by design, Wiper by accident Check Point Research
- Vect and TeamPCP partner for ransomware campaigns Sophos
- Vect Ransomware Group Profile: TTPs, Targets & Mitigations Cyble
- Bugs & Betrayal – Vect Analysis JUMPSEC
- Emerging Ransomware Group: Vect Halcyon