Ransomware group
Blackout ransomware: victims and leak site activity
The Blackout ransomware group has listed 12 victims on its leak site since February 2024; its latest post is from 19 July 2026. Most affected countries: France, Greece and Canada. Most targeted sector: Healthcare.
Total posts
12
First seen
2024-02-26
Latest post
2026-07-19
Countries hit
9
About Blackout
Blackout is a ransomware group that first appeared in early 2024, initially claiming attacks against healthcare entities in Canada, France, and Germany before expanding to telecommunications, mining, and manufacturing sectors, operating a double-extortion model with a data leak site.
Most targeted countries
- France 2
- Greece 2
- Canada 1
- Germany 1
- United Kingdom 1
- Croatia 1
- Japan 1
- Mexico 1
- United States 1
Most targeted sectors
- Healthcare 3
- Professional Services 3
- Technology 2
- Government & Defense 1
- Hospitality 1
- Manufacturing 1
- Transportation 1
Blackout victims per year
All 12 victims
Search every post in the full table.| Victim | Country | Sector | Discovered |
|---|---|---|---|
| yano.tokyo | Japan | Technology | |
| www.miatech.net | United States | Technology | |
| bluebellgroup.com | United Kingdom | Professional Services | |
| nedamaritime.gr | Greece | Transportation | |
| cdc-biodiversite.fr | France | Government & Defense | |
| antaeustravel.com | Greece | Hospitality | |
| luzan5.com | — | Healthcare | |
| badel1862.hr | Croatia | Professional Services | |
| mcmtelecom.com | Mexico | Professional Services | |
| ht-hospitaltechnik.de | Germany | Healthcare | |
| ch-armentieres.fr | France | Healthcare | |
| metal7.com | Canada | Manufacturing |