BreachCensus

brotherhood

First seen November 15, 2025Active18 claimed victims

The claims below are reproduced as posted by brotherhood on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Brotherhood is a ransomware group that emerged in late 2025, targeting organizations in the US, Canada, and Australia across manufacturing, communications, and construction sectors, operating a Tor-based double-extortion leak site.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
Italgrafica SistemiJanuary 6, 2026ransomware_live
häussermann stauden gehölze gmbhDecember 10, 2025ransomware_live
Ingenieurbüro LaudiNovember 28, 2025ransomware_live
Ninas JewelleryNovember 15, 2025ransomware_live
Kaener PersonalNovember 15, 2025ransomware_live
Cera StribleyNovember 15, 2025ransomware_live
Spoleta ConstructionNovember 15, 2025ransomware_live
Horst RealtyNovember 15, 2025ransomware_live
Citizens' Committee for Children of New YorkOctober 11, 2025ransomware_live
IntegliaOctober 11, 2025ransomware_live
Coal Industry Social Welfare OrganisationOctober 10, 2025ransomware_live
Orion Communications and Public RelationsOctober 10, 2025ransomware_live
Motility SoftwareOctober 10, 2025ransomware_live
UVJ TechnologiesOctober 10, 2025ransomware_live
KevmorOctober 10, 2025ransomware_live
Sternthal Montigny Greenberg St-GermainOctober 10, 2025ransomware_live
Momentum LogisticsOctober 10, 2025ransomware_live
Woodmen Valley ChapelApril 4, 2025ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).