The Everest ransomware group experienced a significant security breach when their Tor leak site was defaced and subsequently taken offline. This group, known for its ransomware activities and initial access broker operations, has been a threat since 2020, listing more than 200 victims including healthcare organizations. In 2024, the group targeted a U.S. healthcare facility, demonstrating its continuous impact on sensitive sectors. The defacement, which left a message deriding crime, suggests a potential backlash from the cyber community or an inside exit scam, although no party has claimed responsibility. This incident impacts the group's operations by disrupting their communication and data leak platform, likely affecting their extortion capabilities.
TPRM report: https://scoringcyber.rankiteo.com/company/cannabis-isao
"id": "can000041125",
"linkid": "cannabis-isao",
"type": "Breach",
"date": "4/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"