pear
Known ransomware group ACTIVE Currently active
Pure Extraction And Ransom (PEAR) Team is the community of highly responsible and strictly disciplined members. We are a private team and have nothing common with any other threat actors. We've been monitoring this field for a long-long time. So, we understand all the processes and know well how it all works.
2
Total Claims
1
Critical
—
Records Claimed
2
Industries Hit
Active span: May 2, 2026 – Sep 22, 2026 · 2 organizations targeted
Currently active
Actor Threat Profile
Activity Timeline
Peak: May 2026 (1)May 2026
LessMore
Sep 2026Top Targeted Industries
Healthcare 1
Business Services 1
Tradecraft & Infrastructure
0
Documented tools
8 / 20
MITRE tactics / techniques
19
Known leak sites