RansomHouse Extortion Group
Threat Actor
RansomHouse extortion group gets into victims' networks by exploiting vulnerabilities to steal data and coerces victims to pay up, lest their data is sold to the highest bidder. And if no criminal is interested in buying the data, the group leaks it on their leak site.
"We believe that the culprits are not the ones who found the vulnerability or carried out the hack, but those who did not take proper care of security. The culprits are those who did not put a lock on the door leaving it wide open inviting everyone in," the RansomHouse threat actors write on their 'about us' page.
Incidents Associated with this Threat
- October 20, 2025: German Machinery Manufacturer’s Systems Offline After Cyberattack
- October 16, 2025: Japanese Chemical Manufacturer Discloses System Failure due to Cyberattack
- April 19, 2025: German Beer Brewer Hit by Ransomware Attack
- February 26, 2024: Liquid Transportation Carrier GCA Nederland Hit by Ransomware Attack
- March 6, 2023: Ransomhouse Extortion Group Paralyzes Barcelona Hospital Operations.
- November 27, 2022: Ransomware Attack at Columbian Multinational Healthcare Provider Disrupts Operations
- June 10, 2022: RansomHouse Gang Claims Attack on Largest Supermarket Chain in Africa
- January 5, 2022: RansomHouse Databreach Extracted 450 GB of Data at Chipmaker AMD
Malware Used by this Threat Actor
No malware identified for this threat actor.
