Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Nightsky

| RaaS

Night Sky is a China-nexus ransomware group (attributed to the "Emperor Dragonfly" cluster) that emerged in late 2021, gaining notoriety in early 2022 by exploiting the Log4Shell vulnerability (CVE-2021-44228) to target corporate networks across healthcare, finance, government, and manufacturing using multi-extortion tactics.

Victims
2
 
First Discovered
2022-01-04
victim
Last Discovered
2022-01-04
victim
Inactive Since
4yrs
more than
Avg Delay
N/A
attack→claim
Infostealer
N/A
victims with domain
Countries
0
hit
View Victims on World Map View Group Statistics

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon Night Sky No 2026-04-28T07:25:23 gg5ryfgogainisskdvh4y373ap3b2mxafcibeh2lvq5x7fx76ygcosad.onion

Target
Top 5 Activity Sectors
  • Manufacturing 1
  • Technology 1
Top 5 Countries

Heatmap

YARA Rules (1)

Victims (2)
Logo
Discovered: 2022-01-04 (4y ago)
No description available