Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Robinhood

RobbinHood is a ransomware group first observed in April–May 2019, responsible for high-profile attacks on US cities including Baltimore, Maryland — demanding 13 BTC and causing months of disruption to city services — believed to operate as a limited closed-circle model rather than a broad public affiliate program.

Victims
1
 
First Discovered
2021-12-06
victim
Last Discovered
2021-12-06
victim
Inactive Since
4yrs
more than
Avg Delay
N/A
attack→claim
Infostealer
N/A
victims with domain
Countries
0
hit
View Victims on World Map View Group Statistics

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon Tumblr Yes 2026-08-01T08:43:09 NGINX nginx robinhoodleaks.tumblr.com

Target
Top 5 Activity Sectors
  • Financial Services 1
Top 5 Countries

Heatmap

YARA Rules (2)

Victims (1)
Logo
Discovered: 2021-12-06 (4y ago)
No description available