Uptime Hamster: 10d 6h 38mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Eraleign

Eraleign

0 incidentes 0 paises 0 sectores ransomware CZ Ultimo: -
Aliases: Bashe, APT73, Apt 73, eraleig ransomware
Ver en IntelTracker → APTTrail →
Eraleign, also known as APT73, is a ransomware group that surfaced in December 2023 and is primarily recognized for its deceptive tactics rather than actual ransomware deployment. The group specializes in fabricating data breach narratives and repurposing existing leaked data, often from older breaches, which they then present on a Tor-hosted leak site to create a facade of credibility. This approach distinguishes them from groups that actively encrypt systems. Eraleign later rebranded to Bashe in October 2024. They mimic the data leak site structures of established ransomware operations like LockBit and self-designate as an 'Advanced Persistent Threat' (APT) to attract affiliates and bolster their reputation for financial gain.

Aliases del actor

BasheAPT73Apt 73eraleig ransomware

Actores similares

eraleign--apt73actor · 1apt73ransomware · 146apt-45actor · 2apt-c-27actor · 2apt-c-01actor · 2apt-c-12actor · 1apt-18actor · 1apt-1877teamactor · 1apt-27actor · 1apt-30actor · 1
Tecnicas MITRE
T1486, T1566, T1027, T1059.001, T1078
Tipo
ransomware
Pais origen
CZ
Motivacion
-
Impacto
65
Actualizado
Fri, 19 Ju

Paises objetivo (SOCRadar)

United Arab EmiratesArmeniaArgentinaAustraliaBangladeshBelgiumBulgariaBrazilCanadaSwitzerland

Sectores objetivo (SOCRadar)

Construction of BuildingsFood ManufacturingOther Information ServicesSoftware PublishersReal EstateHospitalsAccommodationAir TransportationManufacturingConstruction