ShadowByt3$ — Ransomware Profile
ShadowByt3$ is a ransomware-as-a-service group first observed in October 2025, using multi-method extortion and communicating via Telegram and Tox, with a very small confirmed victim list suggesting it remains in early-stage operation.IntelFusions coverage (1)
- Abbott probes two breaches as extortion gangs claim patient data theft 2026-07-20 · Cyber Incidents
Recent claimed victims
- TINYpulse NINTENDO BREACH (nintendo.com) 2026-06-16
- Nintendo Company (Nintendo.com) 2026-06-12
- Lead Company (Leadership Boulevard) 2026-06-03
- Cropwise (Syngenta Group) 2026-06-02
- StarBucks Company (StarBucks.com 2026-05-21
- Hotelogix Company (Hotelogix.com) 2026-05-21
- University Of Georgia 2026-05-14
- PowerCampus 2026-05-14
- Stride Learning 2026-05-14
- Amplify Technology 2026-05-14
- Hotelogix 2026-05-14