moneymessage
Known ransomware group ACTIVE Currently active
Money Message emerged in March 2023 targeting Windows and Linux systems across banking, transportation, and professional services sectors, demanding ransoms in the millions and publishing stolen data on their blog if unpaid, with most known victims based in the US.
1
Total Claims
0
Critical
—
Records Claimed
1
Industries Hit
Active span: Sep 21, 2026 – Sep 21, 2026 · 1 organizations targeted
Currently active
Actor Threat Profile
Activity Timeline
Peak: Sep 2026 (1)Sep 2026
LessMore
Sep 2026Top Targeted Industries
Energy & Utilities 1
Tradecraft & Infrastructure
0
Documented tools
0 / 0
MITRE tactics / techniques
1
Known leak sites