Osiris Ransomware — Victims, Campaigns & Activity

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
January 22, 2026
Last Seen
January 25, 2026

Osiris is a ransomware_group tracked across 2 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed January 22, 2026; most recent activity January 25, 2026.

Overview

Osiris is a ransomware group that emerged in January 2026. It is described as using living-off-the-land (LotL) techniques and a dual-extortion approach (data exfiltration plus encryption), marking it as a notable evolution in ransomware capabilities and threat activity for that period.

Related Threat Clusters

  • Nike Investigates Possible Data Breach by WorldLeaks Group

    Nike is currently investigating a potential data breach following claims from the WorldLeaks cybercrime group that they accessed and stole data from the company's systems. The investigation aims to assess the extent of…

    2 articles · Updated January 25, 2026
  • Osiris Ransomware Targets Organizations with New Techniques

    The Osiris ransomware has emerged as a new threat, identified by the Symantec and Carbon Black Threat Hunter Team. The Araneta Group has been specifically targeted, experiencing unauthorized VPN access and email…

    10 articles · Updated January 22, 2026

Recent Intelligence Reports

  • Nike is investigating a possible data breach, after WorldLeaks claims — Securityaffairs · January 25, 2026
  • Osiris Ransomware — Broadcom · January 22, 2026
  • New Osiris Ransomware Leverages Living Off the Land and Dual — Gbhackers · January 22, 2026

Related Entities

CVSS v3.1 Breakdown