Skip to content

trinity

Inactive

18 tracked victims · First seen Jun 6, 2024 · Last seen Mar 16, 2025

About

Aggregated threat-intel description

Trinity ransomware was first discovered in May 2024, believed to be a rebrand of the Venus/2023Lock variants, using ChaCha20 encryption and double-extortion via a Tor leak site; the US HHS flagged it as a specific threat to the healthcare sector after confirmed attacks on healthcare organizations.

Sectors: Healthcare, Business Services, Manufacturing · Countries: US, CA, ES

Recent victims

View all →
VictimSectorCountryPostedStatus
Kairav Chemofarbe IndustriesManufacturingINMar 16, 2025
consultoria-consultores.esNot FoundESMar 16, 2025
ROBONG-WINMININot FoundMar 16, 2025
Lake Psychological ServicesHealthcareMar 16, 2025
CANAM Realty GroupBusiness ServicesUSMar 16, 2025
CNSNot FoundCNMar 16, 2025
la-z-boyConsumer ServicesUSMar 16, 2025
Agencia Tributaria AEATGovernmentESNov 30, 2024
Barnes & CohenNot FoundUSOct 3, 2024
FoccoERPTechnologyBROct 2, 2024
Fabrica Industrial Machinery & EquipmentManufacturingARSep 23, 2024
INTERNAL.ROCKYMOUNTAINGASTRO.COMHealthcareUSSep 15, 2024
wellandBusiness ServicesCASep 1, 2024
Cosmetic Dental GroupHealthcareJEAug 18, 2024
Banner and AssociatesNot FoundUSAug 13, 2024
sgvfr.comFinancialUSJun 12, 2024
CBSTRAININGBusiness ServicesCAJun 12, 2024
filmetrics corporationTechnologyPHJun 11, 2024

All ransomware groups · Dark web intelligence