exitium logo

exitium

5 incidentes 3 paises 4 sectores ransomware Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
Exitium is a data extortion group that emerged in early March 2026, known for operating a Tor-based leak site and primarily focusing on bulk data exfiltration followed by public naming-and-shaming, rather than relying heavily on file encryption. This group is characterized by its "data-centric" approach, acting as a data broker where encryption is often a secondary or even absent component of their extortion tactics, as evidenced by only one of their initial five publicly claimed victims experiencing full encryption. The group's motivation is purely financial, and there is no public attribution to any specific origin country or known nation-state. They distinguish themselves by prioritizing the theft and exposure of sensitive data over the more traditional ransomware model of encrypting systems first.

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
4
TTPs unicas
1
Info robada historica
400 GB
Rescates reclamados
N/D
Pagos detectados
N/D

TTPs observadas

T1566 Phishing

Paises afectados

United States (3) Taiwan (1) Brazil (1)

Paises objetivo (SOCRadar)

BrazilCanadaGermanySpainFranceIndiaItalyPanamaSingaporeThailand

Sectores atacados

Healthcare (1) Energy (1) Agriculture and Food Production (1) Public Sector (1)

Sectores objetivo (SOCRadar)

Agriculture&ForestryEnergy & Utilities ConstructionManufacturingHealthCare & Social AssistancePublic AdministrationFood ManufacturingElectrical&Electronical ManufacturingElectrical Equipment, Appliance, and Component ManufacturingOffices of Physicians

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com

Victimas (4)

Gastroenterology & Hepatology of CNY14 Apr 2026
Ransomware United States Healthcare
Resumen Una alerta de ransomware ha afectado a la clínica Gastroenterology & Hepatology of CNY (gandhofcny.com) en Syracuse, NY. El grupo ciberatacant…
Ming Hwei Energy29 Mar 2026
Ransomware Taiwan Energy
Resumen Ming Hwei Energy, una empresa de pequeña tamaño en Taiwán perteneciente a un conglomerado de tornillos, ha sido objetivo de una alerta de rans…
Marborges Agroindustria23 Mar 2026
Ransomware Brazil Agriculture and Food Production
Resumen Marborges Agroindustria, una empresa brasileña con un historial de seguridad comprometido, ha sido identificada como objetivo de un ataque de …
Fannin CAD17 Mar 2026
Ransomware United States Public Sector
Resumen Fannin CAD, un distrito de planificación urbana en Texas, ha sido objeto de una alerta de ransomware atribuida al grupo exitium. Según registr…