Ransomware group

Blackout ransomware: victims and leak site activity

The Blackout ransomware group has listed 12 victims on its leak site since February 2024; its latest post is from 19 July 2026. Most affected countries: France, Greece and Canada. Most targeted sector: Healthcare.

Total posts 12
First seen 2024-02-26
Latest post 2026-07-19
Countries hit 9

About Blackout

Blackout is a ransomware group that first appeared in early 2024, initially claiming attacks against healthcare entities in Canada, France, and Germany before expanding to telecommunications, mining, and manufacturing sectors, operating a double-extortion model with a data leak site.

Leak site (Tor)
http://black3gnkizshuynieigw6ejgpblb53mpasftzd6pydqpmq2vn2xf6yd.onion

Blackout victims per year

9 2024
0 2025
3 2026

All 12 victims

Search every post in the full table.
Victim Country Sector Discovered
yano.tokyo Japan Technology
www.miatech.net United States Technology
bluebellgroup.com United Kingdom Professional Services
nedamaritime.gr Greece Transportation
cdc-biodiversite.fr France Government & Defense
antaeustravel.com Greece Hospitality
luzan5.com Healthcare
badel1862.hr Croatia Professional Services
mcmtelecom.com Mexico Professional Services
ht-hospitaltechnik.de Germany Healthcare
ch-armentieres.fr France Healthcare
metal7.com Canada Manufacturing