thegentlemen

Ransomware
Sourceransomware.live
0

Vexday analysis

TheGentlemen é uma operação de ransomware como serviço (RaaS) que emergiu entre julho e agosto de 2025, acumulando rapidamente mais de 320 vítimas em 17 ou mais países ao oferecer a afiliados uma participação de 90% nas receitas. O grupo emprega um locker desenvolvido em Go, compatível com sistemas Windows, Linux, NAS e BSD. Um servidor de comando e controle comprometido em 2026 revelou mais de 1.570 vítimas vinculadas à operação. No Brasil, são registradas 20 vítimas conhecidas associadas ao grupo.

Exploited vulnerabilities 4

CVEs this group is known to exploit, per MITRE ATT&CK. Ordered by real-world severity.

Impact and victims

The group thegentlemen has 35 known ransomware victims. See the most affected sectors and countries and recent victims.

35known victims
35in Brazil
8sectors hit
Activity (12 months)
12
01
02
03
04
05
06
07
08
09
Most attacked sectors
Manufacturing8
Healthcare6
Education5
Professional Services4
Government & Defense3
Agriculture and Food Production3
Other2
Technology2
Most affected countries
🇧🇷 Brasil35
Recent victims
ANP HealthHealthcare · BR · 2026-09-21
HumboldtOther · BR · 2026-09-14
Multipla Contabilidade EmpresarialProfessional Services · BR · 2026-09-14
MutantOther · BR · 2026-09-07
Biotipo JeansRetail & E-Commerce · BR · 2026-09-07
ZaniniManufacturing · BR · 2026-09-07
Lider AviacaoTransportation · BR · 2026-09-05
Exacta Optech LabcenterHealthcare · BR · 2026-08-28
TEC ContainerManufacturing · BR · 2026-08-25
UOLconsultProfessional Services · BR · 2026-08-21
Vector Two TechnologyTechnology · BR · 2026-08-14
Megalaser Industria Metalurgica LTDAManufacturing · BR · 2026-08-14
Intranet Gov BrasilGovernment & Defense · BR · 2026-08-06
CRB groupProfessional Services · BR · 2026-07-31
The Municipal Chamber of SerraGovernment & Defense · BR · 2026-07-31

thegentlemen uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →