cryptbb
First seen September 15, 2023Active8 claimed victims
The claims below are reproduced as posted by cryptbb on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.
Listed organisation? Contact [email protected].
Profile
CryptBB is a ransomware group with likely Russian origins active around 2023, whose payload appends random extensions to encrypted files and whose data leak site copied 8Base's source code, listing approximately 8 victims as of September 2023.
Description from ransomware.live.
Claimed victims (as posted by the group — unverified)
| Victim (as posted) | Claimed on | Source | Press coverage |
|---|---|---|---|
| ToyotaLift Northeast | August 16, 2023 | ransomware_live | — |
| Aspect Structural Engineers | August 15, 2023 | ransomware_live | — |
| Danbury Public Schools | August 1, 2023 | ransomware_live | — |
| KIRWIN FRYDAY MEDCALF Lawyers LLP | July 6, 2023 | ransomware_live | — |
| Jeff Wyler Automotive Family, Inc. | July 4, 2023 | ransomware_live | — |
| Polanglo | July 4, 2023 | ransomware_live | — |
| CON-STRUCT | June 28, 2023 | ransomware_live | — |
| P1 Technical Services | April 3, 2022 | ransomware_live | — |
Claim data from ransomware.live and RansomLook (CC BY 4.0).