helldown
RansomwareAbout the group
Helldown is an aggressive ransomware group first documented in August 2024, known for exploiting Zyxel firewall vulnerabilities to gain initial access and conducting large-scale data exfiltration averaging 70 GB per victim, targeting IT services, telecommunications, manufacturing, and healthcare primarily in the US.
Exploited vulnerabilities
No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.
Impact and victims
The group helldown has 1 known ransomware victims. See the most affected sectors and countries and recent victims.
1known victims
1in Brazil
1sectors hit
Most attacked sectors
Manufacturing1
Most affected countries
🇧🇷 Brasil1
Recent victims
cbmm
helldown uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.
Explore the AI Autonomous Pentest →