Ransomware Groups

Track active ransomware operations, dark web infrastructure, and associated threat actors

637
Ransomware Groups

Cooming

2 sites2021

Hellcat

9 sites2024

Adminlocker

1 site2024

Colossus

Tommyleaks

1 site2024

Turkish Crypter

1 site2026

Catb

Astralocker

0Mega

4 sites2024

Blackbyte Crux

2 sites2025

Zixer2

Satanlock

7 sites2025

Exorcist

According to PCrisk, Exorcist is a ransomware-type malicious program. Systems infected with this malware experience data encryption and users receive ransom demands for decryption. During the encryption process, all compromised files are appended with an extension consisting of a ransom string of characters.For example, a file originally named "1.jpg" could appear as something similar to "1.jpg.rnyZoV" following encryption. After this process is complete, Exorcist ransomware changes the desktop wallpaper and drops HTML applications - "[random-string]-decrypt.hta" (e.g. "rnyZoV-decrypt.hta") - into affected folders. These files contain identical ransom messages.

1 site2021

Quantum

11 sites2024

Vfokx

2 sites2021

Ransom Corp

1 site2021

Desolator

1 site2025

Yashma

Megazord

1 actor
Storm-1567

Xinglocker

10 sites2022

Jsworm

Gazprom

Teamxxx

1 site2025

Revil

Sodinokibi ransomware group also known as REvil (Ransomware Evil) operates as a ransomware-as-a-service (RaaS) model. After the group compromised his victims, they would threaten to publish the victim's sensitive data on their darknet blog named 'Happy Blog', unless the ransom is paid. The ransomware malware code used by REvil is pretty similar to the ransomware code used by DarkSide - a different threat actor. REvil group claims to steal information after a successful attack on the supplier of the tech giant Apple and stole confidential schematics of their upcoming products.

10 sites2 actors2022
FIN7GOLD SOUTHFIELD
Showing 25 - 48 of 637
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001