SH

shadowbyt3$

Known ransomware group
Established actor

ShadowByt3$ is a ransomware-as-a-service group first observed in October 2025, using multi-method extortion and communicating via Telegram and Tox, with a very small confirmed victim list suggesting it remains in early-stage operation.

3

Total Claims

0

Critical

Records Claimed

1

Industries Hit

Active span: May 14, 2026 – May 14, 2026 · 3 organizations targeted

Established actor
Activity 3.8 Severity 2.5 Sectors 2.3 Tooling 0.0

Actor Threat Profile

Activity Timeline

Peak: May 2026 (3)
May 2026
LessMore
May 2026

Share this profile

Shareable intel card for shadowbyt3$

Top Targeted Industries

Education 3

Tradecraft & Infrastructure

0

Documented tools

0 / 0

MITRE tactics / techniques

3

Known leak sites

Full intelligence profile on ransomware.live →

Claims by shadowbyt3$

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.