bianlian Unknown

First seen: -
0
Total Victims
0
Victims (30d)
Details

BianLian ransomware operations began in late 2021. The group practices multi-pronged extortion, demanding payment for a decryptor, as well as the non-release of stolen data. The ransomware group hosts a public, TOR-based, blog to post victim identities and stolen data. Somewhat unique to BianLian at the time of their launch was their inclusion of an I2P mirror for their blog.

Leak Site

Onion URL: http://bianlivemqbawcco4cx4a672k2fip3guyxudzurfqvdszafam3ofqgqd.onion

Metadata

Slug: bianlian

Created: 14/01/2026 08:19

Updated: 28/06/2026 16:02