Toy Ghouls’ new toy: the GenieLocker ransomware

Reported 30 Jul 2026 by otx · Severity: medium

GenieLocker is a new ransomware family active since March 2026, targeting organizations in the Russian Federation, primarily in manufacturing. Attributed to the financially motivated Toy Ghouls group (also known as Bearlyfy, Labubu, and Laboo.boo), this custom-designed ransomware