Abyss

Active
Abyss (also known as Abyss Locker) is a ransomware operation first identified in March 2023, derived from the Babuk source code, that targets Windows and Linux/VMware ESXi systems using double-extortion tactics across healthcare, manufacturing, finance, and technology sectors — predominantly in North America.
91 Victims
Mar 21, 2023 First Discovered
Aug 26, 2026 Last Discovered
21 Days Inactive
0% Infostealer
1/1 Sites Online
Known Locations (1)
Abyss-data
3ev4metjirohtdpshsqlkrqcmxq6zu3d7obrdhglpy5jpbr7whmlfgqd.onion
Victims (91)

Detailed victim list temporarily unavailable

This group has 91 victims. The victim list API is currently responding slowly for this dataset. Country, sector, and infostealer breakdowns are not available at this time. Basic stats (victim count, first/last seen) are shown above from a faster data source.