Skip to content

monti

Inactive

25 tracked victims · First seen Dec 7, 2022 · Last seen May 7, 2025

About

Aggregated threat-intel description

Monti is a ransomware group first observed in June 2022 that initially copied nearly all of Conti's leaked source code, pivoting to target government, legal, and healthcare entities, later releasing a new Linux variant in 2023 with significantly less Conti code similarity, and experimenting with an affiliate model.

Sectors: Business Services, Healthcare, Technology · Countries: US, CA, FR

Recent victims

View all →
VictimSectorCountryPostedStatus
Amtech SoftwareTechnologyUSMay 8, 2025
American Eagle LogisticsTransportation/LogisticsUSMay 3, 2025
CDNot FoundJPMar 19, 2025
Gloria CalesNot FoundMar 19, 2025
agi.netTechnologyUSMar 6, 2025
365labs - Security CorpTechnologyMar 4, 2025
PhoenixNot FoundMar 4, 2025
FM.GOB.ARNot FoundARMar 2, 2025
sole technologyTechnologyUSFeb 11, 2025
nenok.deManufacturingDEJan 30, 2025
FENSTERMAKERNot FoundUSJan 30, 2025
SCV Med GroupHealthcareJan 29, 2025
lnetworkNot FoundAUJan 28, 2025
AcoustiblokManufacturingUSJan 28, 2025
BBLAWFIRMNot FoundAEJan 28, 2025
metalurgica romaManufacturingITJan 28, 2025
Omni Fiber LLCTelecommunicationUSJan 22, 2025
ibericarNot FoundESDec 22, 2024
Oxford Auto InsuranceFinancialUSNov 20, 2024
Anderson Miller LTDNot FoundGBNov 19, 2024
Premier Tax ServicesFinancialUSNov 19, 2024
KVFNot FoundFONov 19, 2024
Southern Oregon Veterinary Specialty CenterHealthcareUSNov 19, 2024
SuperlineNot FoundTROct 21, 2024
City Of Forest ParkGovernmentUSOct 21, 2024

All ransomware groups · Dark web intelligence