Space Bears — Ransomware Profile
Space Bears is a double-extortion ransomware group that emerged in April 2024, distinguished by a professional "corporate" aesthetic on its leak site, leveraging Phobos RaaS infrastructure and targeting small-to-medium organizations in manufacturing, technology, and healthcare across the US and Europe.Also tracked as
Spacebears
IntelFusions coverage (3)
- Mexico is suddenly all over the ransomware leak sites 2026-08-22 · Cyber Incidents
- Ransomware crews pile onto Italy's industrial firms 2026-08-13 · Cyber Incidents
- New extortion crew claims Turkey's banks and flag carrier 2026-08-01 · Ransomware
Recent claimed victims
- D-MAX Engineering, Inc 2026-09-05
- Schwartz, Giannini, Lantsberger & Adamson (SGLA) 2026-09-04
- Sports Endeavors 2026-09-04
- Studio Oculistico Ciraci 2026-09-03
- Freelom 2026-08-22
- holzmarkt chemnitz 2026-08-22
- SEARS (Grupo Sanborns) 2026-08-15
- Basso Fedele & Figli S.r.l. (Olio Basso) / Villa Raiano 2026-08-12
- Elixi International SA 2026-08-10
- Hitech Distribuzione Informatica S.r.l. (HTDI) 2026-08-07
- PontoBR Sistemas 2026-08-05
- StellarRAD Systems 2026-07-29
- BiesSse Group 2026-07-21
- Anpra SAS 2026-07-21
- DoAllTech 2026-07-21
- Techpol-System 2026-07-13
- Turbosoft 2026-07-13
- Biessse 2026-07-08
- Fitcrunch 2026-07-07
- Blenheim 2026-07-06
- Salters propane 2026-07-02
- Chebib Control 2026-06-17
- Gerencial 2026-06-17
- Chebib Control 2026-06-17
- Gerencial 2026-06-17