Nightsky

Inactive
Night Sky is a China-nexus ransomware group (attributed to the "Emperor Dragonfly" cluster) that emerged in late 2021, gaining notoriety in early 2022 by exploiting the Log4Shell vulnerability (CVE-2021-44228) to target corporate networks across healthcare, finance, government, and manufacturing using multi-extortion tactics.
2 Victims
Jan 4, 2022 First Discovered
Jan 4, 2022 Last Discovered
1716 Days Inactive
0% Infostealer
0/1 Sites Online
Known Locations (1)
Night Sky
gg5ryfgogainisskdvh4y373ap3b2mxafcibeh2lvq5x7fx76ygcosad.onion
Victims (2)

Detailed victim list temporarily unavailable

This group has 2 victims. The victim list API is currently responding slowly for this dataset. Country, sector, and infostealer breakdowns are not available at this time. Basic stats (victim count, first/last seen) are shown above from a faster data source.