spacebears

Ransomware
Sourceransomware.live
0

About the group

Space Bears is a double-extortion ransomware group that emerged in April 2024, distinguished by a professional "corporate" aesthetic on its leak site, leveraging Phobos RaaS infrastructure and targeting small-to-medium organizations in manufacturing, technology, and healthcare across the US and Europe.

Exploited vulnerabilities

No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.

Impact and victims

The group spacebears has 7 known ransomware victims. See the most affected sectors and countries and recent victims.

7known victims
7in Brazil
5sectors hit
Activity (12 months)
02
05
06
08
Most attacked sectors
Professional Services3
Healthcare1
Manufacturing1
Retail & E-Commerce1
Technology1
Most affected countries
🇧🇷 Brasil7
Recent victims
PontoBR SistemasTechnology · BR · 2026-08-05
Chebib ControlProfessional Services · BR · 2026-06-14
SicolManufacturing · BR · 2026-06-02
GerencialProfessional Services · BR · 2026-05-21
Sitran MGProfessional Services · BR · 2026-02-15
Fattore Cosméticos LtdaRetail & E-Commerce · BR · 2025-09-06
SANTA MARIA LABORATORIOHealthcare · BR · 2025-01-22

References

spacebears uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →