BreachCensus

cheers

First seen May 29, 2022Active15 claimed victims

The claims below are reproduced as posted by cheers on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Cheers is a Linux-based ransomware group that emerged in 2022, built on leaked Babuk source code and specializing in attacks against VMware ESXi servers, running a double-extortion leak site with four documented victims.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
DYNAM JAPAN HOLDINGS CO., LTDSeptember 14, 2022ransomware_live
An Japan Game Halls OperatorSeptember 1, 2022ransomware_live
An British Financial Company -PublicAugust 18, 2022ransomware_live
An Turkey Certified Public Accountancy Firms -UnpayAugust 9, 2022ransomware_live
An Insurance Company -PaidAugust 9, 2022ransomware_live
An Insurance CompanyJuly 19, 2022ransomware_live
An International Shipping Company - PaidJuly 18, 2022ransomware_live
An British Financial Company -UnpayJuly 18, 2022ransomware_live
An International Shipping Company - UnpayJuly 1, 2022ransomware_live
https://June 30, 2022ransomware_live
Sembcorp Marine - UnpayJune 28, 2022ransomware_live
An International Maritime Company - UnpayMay 29, 2022ransomware_live
An Belgium Hospital - UnpayMay 29, 2022ransomware_live
An Financial Company - PaidMay 29, 2022ransomware_live
An Technology Company - PaidMay 29, 2022ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).