BreachCensus

arvinclub

First seen September 9, 2021Active35 claimed victims

The claims below are reproduced as posted by arvinclub on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Arvin Club is a threat actor with hacktivist leanings that first appeared in May 2021, primarily publishing stolen data via a TOR site and Telegram rather than deploying file-encrypting ransomware, targeting government, education, and banking sectors globally including Iranian government entities.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
Islamic Azad University Electronic CampusOctober 15, 2023ransomware_live
Jahesh InnovationOctober 14, 2023ransomware_live
Kimia Tadbir KiyanOctober 13, 2023ransomware_live
Islamic Azad University of ShirazOctober 8, 2023ransomware_live
Pasouk biological companyOctober 2, 2023ransomware_live
Shirin Travel AgencyOctober 1, 2023ransomware_live
Aban Tether & OK exchangeSeptember 2, 2023ransomware_live
sti companyAugust 23, 2023ransomware_live
Sabalan AzmayeshAugust 8, 2023ransomware_live
Parsian BitumenAugust 7, 2023ransomware_live
Draje food industrial groupAugust 5, 2023ransomware_live
seaside-kish coAugust 4, 2023ransomware_live
Padena FactoryJuly 29, 2023ransomware_live
150k sib360 DatabaseJuly 27, 2023ransomware_live
Haraz dairyJuly 22, 2023ransomware_live
hamyari Shahrdari golestanJuly 20, 2023ransomware_live
AFTA IsfahanJuly 18, 2023ransomware_live
BitimenJuly 9, 2023ransomware_live
Al BijjarApril 21, 2022ransomware_live
AM InternationalApril 20, 2022ransomware_live
stormousMarch 20, 2022ransomware_live
bedfordshire.police.ukMarch 12, 2022ransomware_live
afcx.coNovember 28, 2021ransomware_live
vidisha.kvs.ac.inOctober 24, 2021ransomware_live
RevilOctober 22, 2021ransomware_live
Bureau van Dijk(bvdinfo.com)September 20, 2021ransomware_live
Compilation of Many Breaches (COMB)September 10, 2021ransomware_live
elitemate.comSeptember 9, 2021ransomware_live
T-MobileSeptember 9, 2021ransomware_live
Leiden University HackedSeptember 9, 2021ransomware_live
UtAirSeptember 9, 2021ransomware_live
Beh Pardakht Mellat CardsSeptember 9, 2021ransomware_live
Etoudplus.irSeptember 9, 2021ransomware_live
33M Bank Mellat – IranSeptember 9, 2021ransomware_live
CardPayPortalSeptember 9, 2021ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).