The fake pdf attached to the "PURCHASE ORDER 05-30-2023" email contains a link, from which you download a tgz file with a TAR, inside which there is an exe: the malware.
Cybercrime, is Mindware a new gang one or a rebrand?

Is Mindware a new cybercrime gang one or a rebrand? The cybersecurity researcher MalwareHunterTeam explains that their ransomware belongs the the SFile family, most likely SFile2. Their start appearing around middle of last month
Mindware is a new ransomware gang that started apperaring in the cybercrime panorama in the middle of last month. It has been denounced by the cybersecurity researcher MalwareHunterTeam. Their malicious code belongs the the SFile family, most likely SFile2. However, according the expert, today is not possible to understand if this is a new gang or a rebrand of a previous one. What is certain is that it exploits the Double Extortion scheme to increase pressure on victims and force them to pay the ransoms.