Skip to content

vanhelsing

Active

8 tracked victims · First seen Mar 12, 2025 · Last seen Apr 5, 2025

About

Written by ThreatCluster from 2 stories

VanHelsing is a ransomware-as-a-service (RaaS) operation that targets multiple operating systems, including Windows, Linux, BSD, ARM, and ESXi, and is designed to exploit vulnerabilities across platforms. Eight victims have been claimed, with hits across Healthcare, Technology, Business Services, Financial Services, and Public Sector, and the most affected countries are the US, AU, CL, FR, and IT. The reporting shows a cross-OS targeting pattern via the RaaS model, illustrated by notes that VanHelsing targets Windows, Linux, BSD, ARM, and ESXi.

Sectors: Healthcare, Technology, Business Services · Countries: US, AU, CL

Recent victims

View all →
VictimSectorCountryPostedStatus
caschile.clFinancial ServicesCLApr 5, 2025
attorneykohm.comBusiness ServicesUSMar 31, 2025
alertenterprise.comTechnologyUSMar 31, 2025
compumedics.com.au AND neuromedicalsupplies.comHealthcareAUMar 26, 2025
studiocdlvallone.itNot FoundITMar 24, 2025
www.medsrx.comHealthcareMar 19, 2025
Atos-racks.comTechnologyFRMar 18, 2025
www.cityofbellville.comPublic SectorUSMar 17, 2025

All ransomware groups · Dark web intelligence