BreachCensus

nightsky

First seen January 4, 2022Active2 claimed victims

The claims below are reproduced as posted by nightsky on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Night Sky is a China-nexus ransomware group (attributed to the "Emperor Dragonfly" cluster) that emerged in late 2021, gaining notoriety in early 2022 by exploiting the Log4Shell vulnerability (CVE-2021-44228) to target corporate networks across healthcare, finance, government, and manufacturing using multi-extortion tactics.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
東京コンピュータサービスJanuary 4, 2022ransomware_live
AKIJ GROUPJanuary 4, 2022ransomware_live

Claim data from ransomware.live and RansomLook (CC BY 4.0).