0mega
First seen July 14, 2022Active7 claimed victims
The claims below are reproduced as posted by 0mega on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.
Listed organisation? Contact [email protected].
Profile
0mega is a double-extortion ransomware group that emerged in May 2022, targeting businesses across multiple sectors worldwide by encrypting files and threatening to leak stolen data; it also pivoted to cloud-based extortion by compromising Microsoft 365 admin accounts.
Description from ransomware.live.
Claimed victims (as posted by the group — unverified)
| Victim (as posted) | Claimed on | Source | Press coverage |
|---|---|---|---|
| Four Hands LLC | January 25, 2024 | ransomware_live | — |
| Rotorcraft Leasing Company | October 17, 2023 | ransomware_live | — |
| US Liner Company & American Made LLC | October 4, 2023 | ransomware_live | — |
| Aviacode (GeBBS) | February 12, 2023 | ransomware_live | — |
| Aviacode | January 9, 2023 | ransomware_live | — |
| Nextlabs | September 15, 2022 | ransomware_live | — |
| Maxey Moverley | July 14, 2022 | ransomware_live | — |
Claim data from ransomware.live and RansomLook (CC BY 4.0).