nitrogen Unknown

First seen: 19/01/2026 14:18 Last Attack: 19/03/2026
8
Total Victims
0
Victims (30d)
Details

Nitrogen began as a malware loader in 2023 used to deliver BlackCat/ALPHV ransomware, then evolved into a fully independent ransomware operator by mid-2024, operating its own strain derived from leaked Conti 2 builder code and conducting double-extortion attacks primarily linked to Eastern European infrastructure.

Leak Site

Onion URL: 6lrsxvqscxtznb4fhux5u3vbslbanxjzxzgtokjtfwaitxe4pfgfebad.onion

Victims by Country
πŸ‡ΊπŸ‡Έ United States 4
2
πŸ‡¨πŸ‡¦ Canada 1
πŸ‡«πŸ‡· France 1
Ransomware Victims 8
Victim Country Sector Discovered
ENENSYS Technologies πŸ‡«πŸ‡· FR Technology 19/03/2026 16:08
19/03/2026
DeWalch Technologies, Inc πŸ‡ΊπŸ‡Έ US Technology 18/02/2026 14:38
18/02/2026
PCCA πŸ‡ΊπŸ‡Έ US Healthcare 10/02/2026 21:22
10/02/2026
LumioDental πŸ‡ΊπŸ‡Έ US Healthcare 05/02/2026 13:36
05/02/2026
QualiChem Metalworking πŸ‡ΊπŸ‡Έ US Manufacturing 27/01/2026 16:37
27/01/2026
Connor Co - Not Found 27/01/2026 13:39
27/01/2026
Durashiloh - Not Found 19/01/2026 16:29
19/01/2026
Whitfield Welding Inc πŸ‡¨πŸ‡¦ CA Manufacturing 19/01/2026 14:18
19/01/2026
Metadata

Slug: nitrogen

Created: 14/01/2026 08:19

Updated: 28/06/2026 16:02