BreachCensus

blackout

First seen February 26, 2024Active12 claimed victims

The claims below are reproduced as posted by blackout on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Blackout is a ransomware group that first appeared in early 2024, initially claiming attacks against healthcare entities in Canada, France, and Germany before expanding to telecommunications, mining, and manufacturing sectors, operating a double-extortion model with a data leak site.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
bluebellgroup.comJuly 19, 2026ransomware_live
www.miatech.netJuly 19, 2026ransomware_live
yano.tokyoJuly 19, 2026ransomware_live
nedamaritime.grDecember 10, 2024ransomware_live
cdc-biodiversite.frSeptember 26, 2024ransomware_live
antaeustravel.comAugust 22, 2024ransomware_live
luzan5.comJuly 14, 2024ransomware_live
badel1862.hrJuly 3, 2024ransomware_live
mcmtelecom.comMay 29, 2024ransomware_live
ht-hospitaltechnik.deApril 18, 2024ransomware_live
metal7.comFebruary 26, 2024ransomware_live
ch-armentieres.frFebruary 26, 2024ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).