ms13089
MS13089 is a newly emerged ransomware group (first observed December 2025) that named itself after a 2013 Microsoft Security Bulletin, claiming a handful of victims including a law firm, operating primarily as a double-extortion actor.
| Name | Country | Sector | Date |
|---|---|---|---|
| brittanyresidential.com | US | Consumer Services | 2026-05-05T11:53:39.404312+00:00 |
| sjl-legal.com | LU | Business Services | 2026-01-15T23:17:12.348509+00:00 |
| dgpcommercialisti.it | IT | Business Services | 2025-12-18T09:55:42.738988+00:00 |
| uro.com | DE | Healthcare | 2025-12-18T09:54:49.187306+00:00 |
Data from ransomware.live