Ransomware group
Abyss ransomware: victims and leak site activity
The Abyss ransomware group has listed 91 victims on its leak site since March 2023; its latest post is from 26 August 2026. Most affected countries: United States, United Kingdom and Canada. Most targeted sector: Professional Services.
Total posts
91
First seen
2023-03-21
Latest post
2026-08-26
Countries hit
15
About Abyss
Abyss (also known as Abyss Locker) is a ransomware operation first identified in March 2023, derived from the Babuk source code, that targets Windows and Linux/VMware ESXi systems using double-extortion tactics across healthcare, manufacturing, finance, and technology sectors — predominantly in North America.
Most targeted countries
- United States 43
- United Kingdom 4
- Canada 3
- Switzerland 2
- Germany 2
- Hong Kong 2
- Austria 1
- Australia 1
- Spain 1
- Israel 1
Most targeted sectors
- Professional Services 22
- Technology 14
- Healthcare 13
- Manufacturing 12
- Agriculture and Food Production 8
- Financial Services 6
- Transportation 4
- Retail & E-Commerce 3
- Government & Defense 2
- Hospitality 2