BreachCensus

exitium

First seen March 17, 2026Active4 claimed victims

The claims below are reproduced as posted by exitium on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Exitium is a data extortion group first observed in early 2026, operating a Tor-based double extortion site and targeting victims via bulk data exfiltration followed by public naming-and-shaming, with known victims including a Brazilian agro-industrial firm and a US county appraisal district.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
Gastroenterology & Hepatology of CNYApril 14, 2026ransomware_live
Ming Hwei EnergyMarch 29, 2026ransomware_live
Marborges AgroindustriaMarch 23, 2026ransomware_live
Fannin CADMarch 17, 2026ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).