Skip to content

thegreenbloodgroup

Inactive

0 tracked victims · First seen Feb 4, 2026 · Last seen Feb 4, 2026

About

Aggregated threat-intel description

The Green Blood Group is an emerging ransomware operation first identified in early 2026 whose Go-based Windows payload uses ChaCha8 encryption and aggressively destroys backup and recovery options, targeting organizations in India, Senegal, Egypt, Colombia, and Belgium.

Recent victims

View all →
No recent victims.

All ransomware groups · Dark web intelligence