HackerFeeds
All ransomware groups

cephalus

19 tracked victims
·first seen 2025-06-28·last activity 2025-08-29

Group profile

Cephalus is a ransomware group active from mid-2025 that leverages stolen RDP credentials to deploy a Go-based ransomware payload via DLL sideloading, targeting law firms, healthcare, financial services, and IT firms across the US and Japan with 19 known victims.

Recent victims

DateWebsite / victimSectorCountry
2025-08-29Not FoundGB
2025-08-29HealthcareGB
2025-08-29
shelbourneaccountants.ie
Shelbourne Accountantsshelbourneaccountants.ie
Financial ServicesIE
2025-08-29
acroamatics.com
Delta Information Systemsacroamatics.com
TechnologyUS
2025-08-28
coloradohealthnetwork.org
Colorado Health Network Inccoloradohealthnetwork.org
HealthcareUS
2025-08-28
texaspregnancy.org
Texas Pregnancy Care Networktexaspregnancy.org
HealthcareUS
2025-08-28
wilderlawfirm.com
wilderlawfirmwilderlawfirm.com
Not FoundUS
2025-08-28ManufacturingNL
2025-08-26
txpregnancy.org
txpregnancy.org - Fake Abortion Clinics Exposedtxpregnancy.org
Not FoundUS
2025-08-26
viennava.gov
Town of Vienna, VAviennava.gov
Public SectorUS
2025-08-26
lbkmlaw.com
Lewis Baach Kaufmann Middlemiss PLLClbkmlaw.com
Business ServicesUS
2025-08-20
lee-irvine.com
Lee & Associateslee-irvine.com
Business ServicesUS
2025-08-26
sskrplaw.com
Sherman, Silverstein, Kohl, Rose & Podolsky, P.A.sskrplaw.com
Business ServicesUS
2025-08-26
gmllp.com
Guerrero Mears LLPgmllp.com
Business ServicesUS
2025-08-26Financial ServicesUS
2025-08-26
kstrategies.com
K Strategies Marketing and Public Relationskstrategies.com
Business ServicesUS
2025-08-26
bararch.com
BAR Architects & Interiorsbararch.com
Construction
2025-08-26
system-exe.co.jp
SystemExec Co., Ltd.system-exe.co.jp
TechnologyJP
2025-06-28
carestlhealth.org
CareSTL Healthcarestlhealth.org
HealthcareUS