cyclops
First seen July 1, 2023Active7 claimed victims
The claims below are reproduced as posted by cyclops on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.
Listed organisation? Contact [email protected].
Profile
Cyclops emerged in May 2023 as a cross-platform RaaS operation targeting Windows, macOS, and Linux systems; it rebranded as "Knight" in August 2023 and its codebase was ultimately sold, with affiliates largely migrating to RansomHub.
Description from ransomware.live.
Claimed victims (as posted by the group — unverified)
| Victim (as posted) | Claimed on | Source | Press coverage |
|---|---|---|---|
| important information(Knight) | July 26, 2023 | ransomware_live | — |
| Cvlan | July 20, 2023 | ransomware_live | — |
| Pechexport | July 20, 2023 | ransomware_live | — |
| Superloop ISP | July 8, 2023 | ransomware_live | — |
| Guatemala Military Intelligence Directorate | June 30, 2023 | ransomware_live | — |
| Atherfield Medical Service | June 29, 2023 | ransomware_live | — |
| ALTARGRUP | June 29, 2023 | ransomware_live | — |
Claim data from ransomware.live and RansomLook (CC BY 4.0).