BreachCensus

madliberator

First seen July 17, 2024Active16 claimed victims

The claims below are reproduced as posted by madliberator on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

MadLiberator is a ransomware group that emerged in mid-2024, known for erratic behavior including randomized ransom demands and unpredictable encryption patterns, targeting government entities including the Italian Ministry of Culture and using a data leak site to post exfiltrated files.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
marthamedeiros.com.brOctober 1, 2024ransomware_live
ctelift.comSeptember 6, 2024ransomware_live
ych.comSeptember 4, 2024ransomware_live
awsag.comAugust 17, 2024ransomware_live
suandco.comAugust 7, 2024ransomware_live
msprocuradores.esAugust 6, 2024ransomware_live
coinbv.nlAugust 2, 2024ransomware_live
orbinox.comJuly 25, 2024ransomware_live
vrd.beJuly 24, 2024ransomware_live
ORBINOXJuly 24, 2024ransomware_live
zb.co.zwJuly 13, 2024ransomware_live
sacities.netJuly 12, 2024ransomware_live
MONTERO & SEGURAJuly 12, 2024ransomware_live
crosswear.co.ukJune 19, 2024ransomware_live
VITALDENTJune 13, 2024ransomware_live
BENICULTURALI.ITMay 27, 2024ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).