darkvault

Ransomware
Sourceransomware.live

About the group

DarkVault is a data-exfiltration and double-extortion group first identified in late 2023, targeting medium-to-large organizations in finance, professional services, legal, and technology sectors across Europe, the UK, and North America, with a suspected connection to LockBit.

Exploited vulnerabilities

No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.

Impact and victims

The group darkvault has 6 known ransomware victims. See the most affected sectors and countries and recent victims.

6known victims
6in Brazil
4sectors hit
Most attacked sectors
Professional Services2
Technology2
Healthcare1
Transportation1
Most affected countries
🇧🇷 Brasil6
Recent victims
comoferta.comProfessional Services · BR · 2024-08-08
mercadomineiro.com.brProfessional Services · BR · 2024-08-08
life.vet.brHealthcare · BR · 2024-06-29
aletech.com.brTechnology · BR · 2024-05-07
bzrastreador.com.brTransportation · BR · 2024-04-24
qint.com.brTechnology · BR · 2024-04-14

darkvault uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →