monti
First seen December 7, 2022Active110 claimed victims
The claims below are reproduced as posted by monti on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.
Listed organisation? Contact [email protected].
Profile
Monti is a ransomware group first observed in June 2022 that initially copied nearly all of Conti's leaked source code, pivoting to target government, legal, and healthcare entities, later releasing a new Linux variant in 2023 with significantly less Conti code similarity, and experimenting with an affiliate model.
Description from ransomware.live.
Claimed victims (as posted by the group — unverified)
| Victim (as posted) | Claimed on | Source | Press coverage |
|---|---|---|---|
| Control & Automation technology - LUX Automation | May 3, 2023 | ransomware_live | — |
| ASL 1 - Avezzano Sulmona L'Aquila | May 3, 2023 | ransomware_live | — |
| Weickert Industries | March 23, 2023 | ransomware_live | — |
| Donut Leaks | March 19, 2023 | ransomware_live | — |
| American Institute for Healthcare Quality | March 19, 2023 | ransomware_live | — |
| UnitedLex | March 17, 2023 | ransomware_live | — |
| Cambridge College | March 15, 2023 | ransomware_live | — |
| Regional Transportation Authority | March 7, 2023 | ransomware_live | — |
| Every one of you been a good customer this year | December 22, 2022 | ransomware_live | — |
| test | December 7, 2022 | ransomware_live | — |
← NewerPage 2 of 2
Claim data from ransomware.live and RansomLook (CC BY 4.0).