MO

morpheus

Known ransomware group ACTIVE
Currently active

Morpheus emerged in late 2024 as a semi-private RaaS operation whose affiliates share identical payloads with the HellCat ransomware group, targeting pharmaceutical, manufacturing, legal, and Italian ESXi environments with ransom demands reaching up to 32 BTC (~$3M USD).

1

Total Claims

1

Critical

Records Claimed

1

Industries Hit

Active span: Jun 10, 2026 – Jun 10, 2026 · 1 organizations targeted

Currently active
Activity 1.9 Severity 10.0 Sectors 2.3 Tooling 0.0

Actor Threat Profile

Activity Timeline

Peak: Jun 2026 (1)
Jun 2026
LessMore
Jun 2026

Share this profile

Shareable intel card for morpheus

Top Targeted Industries

Financial Services 1

Tradecraft & Infrastructure

0

Documented tools

0 / 0

MITRE tactics / techniques

1

Known leak sites

Full intelligence profile on ransomware.live →

Targeted Organizations

Claims by morpheus

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.