Blackshadow

Inactive
BlackShadow is an Iranian-linked hack-and-leak group (linked to the Agrius APT) that targeted Israeli companies including insurance firm Shirbit and hosting provider Cyberserve, leaking medical records of 290,000 patients, using extortion as a tool of geopolitical disruption rather than purely for financial gain.
3 Victims
Dec 18, 2021 First Discovered
Dec 18, 2021 Last Discovered
1733 Days Inactive
0% Infostealer
0/1 Sites Online
Known Locations (1)
544corkfh5hwhtn4.onion
Victims (3)

Detailed victim list temporarily unavailable

This group has 3 victims. The victim list API is currently responding slowly for this dataset. Country, sector, and infostealer breakdowns are not available at this time. Basic stats (victim count, first/last seen) are shown above from a faster data source.