GE

genesis

Known ransomware group ACTIVE
Currently active

Genesis is an emerging ransomware group first observed in late 2025, targeting small to mid-sized US organizations across healthcare, retail, financial services, legal, and manufacturing using double-extortion tactics, focusing heavily on data exfiltration and public leaking.

6

Total Claims

5

Critical

Records Claimed

4

Industries Hit

Active span: May 8, 2026 – Jun 3, 2026 · 6 organizations targeted

Currently active
Activity 5.3 Severity 8.8 Sectors 5.4 Tooling 0.0

Actor Threat Profile

Activity Timeline

Peak: May 2026 (5)
May 2026
LessMore
Jun 2026

Share this profile

Shareable intel card for genesis

Top Targeted Industries

Healthcare 3
Financial Services 1
Energy 1
Public Sector 1

Tradecraft & Infrastructure

0

Documented tools

0 / 0

MITRE tactics / techniques

1

Known leak sites

Full intelligence profile on ransomware.live →

Claims by genesis

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.