Skip to content
The Nexus
Group profile13 claimed in last 30d26 total tracked

ransomhouse

Forward this

RansomHouse is a double-extortion RaaS operation active since late 2021, attributed to the threat actor "Jolly Scorpius," targeting over 120 organizations across healthcare, finance, transportation, and government, recently upgrading to a multi-layered dual-key encryption architecture.

First seen: Jun 4 · 00:00 UTCLast seen: Aug 18 · 00:00 UTCTracked since: 2021-06-01
Sectors hit
  • Financial Services1
  • Consumer Services1
Countries hit
  • United States1
  • United Kingdom1
Recent claimed victims
Aug 18 · 17:43 UTC

[DISCLOSED]Alya Construtora

Aug 14 · 13:37 UTC

[DISCLOSED]PCL Holding

Aug 13 · 23:40 UTC

[DISCLOSED]TECHVENTURES BANK S.A.

Aug 12 · 16:28 UTC

[DISCLOSED]City of Beacon

Aug 10 · 20:33 UTC

[DISCLOSED]City of McMinnville OR

Aug 6 · 18:15 UTC

TECHVENTURES BANK S.A.

Aug 6 · 13:26 UTC

City of McMinnville OR

Aug 3 · 17:33 UTC

[DISCLOSED]Fidelity Services Group

Jul 15 · 22:50 UTC

Fidelity Services Group

Financial ServicesUnited KingdomJul 15 · 19:28 UTC

Fidelity Services Group

www.fidelity-services.com
Jul 6 · 11:55 UTC

[DISCLOSED]Prince George County

Jul 3 · 00:55 UTC

[EVIDENCE]Prince George County

Jun 23 · 00:47 UTC

[DISCLOSED]Karl Chevrolet

Jun 8 · 20:48 UTC

Ma Pak Leung Company Limited

Consumer ServicesUnited StatesApr 29 · 22:00 UTC

Karl Chevrolet

www.karlchevrolet.com