ms13089
3 incidentes
2 paises
3 sectores
ransomware Ultimo: 2026-06-29
ms13089 is a ransomware group that emerged in December 2025, primarily motivated by financial gain through data encryption and exfiltration. The group distinguishes itself by employing a double extortion model, threatening to publish sensitive stolen data if ransom demands are not met. Notably, the group named itself after a 2013 Microsoft Security Bulletin, MS13-089. There is limited public information available regarding its specific origin or any notable evolution in its operational structure.
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
Paises objetivo (SOCRadar)
Germany
France
United Kingdom
Italy
Luxembourg
United States
Sectores atacados
Consumer Services (1)
Business Services (1)
Law (1)
Sectores objetivo (SOCRadar)
Construction of BuildingsHospitalsAccommodationManufacturingConstructionEducational ServicesEnergy & Utilities Accommodation&Food ServicesTelecommunicationsTransportation&Warehousing
URLs nuevas detectadas en IntelTracker
Victimas (2)