exitium
First seen March 17, 2026Active4 claimed victims
The claims below are reproduced as posted by exitium on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.
Listed organisation? Contact [email protected].
Profile
Exitium is a data extortion group first observed in early 2026, operating a Tor-based double extortion site and targeting victims via bulk data exfiltration followed by public naming-and-shaming, with known victims including a Brazilian agro-industrial firm and a US county appraisal district.
Description from ransomware.live.
Claimed victims (as posted by the group — unverified)
| Victim (as posted) | Claimed on | Source | Press coverage |
|---|---|---|---|
| Gastroenterology & Hepatology of CNY | April 14, 2026 | ransomware_live | — |
| Ming Hwei Energy | March 29, 2026 | ransomware_live | — |
| Marborges Agroindustria | March 23, 2026 | ransomware_live | — |
| Fannin CAD | March 17, 2026 | ransomware_live | — |
Claim data from ransomware.live and RansomLook (CC BY 4.0).