stormous
Known ransomware group ACTIVE Currently active
Stormous is a politically tinged extortion group active since around 2021 that operates as part of a broader "Five Families" cybercrime collective. It mixes hacktivist messaging with financially motivated data-leak extortion.
5
Total Claims
1
Critical
—
Records Claimed
4
Industries Hit
Active span: May 3, 2026 – Jun 2, 2026 · 5 organizations targeted
Currently active
Actor Threat Profile
Activity Timeline
Peak: May 2026 (4)May 2026
LessMore
Jun 2026Top Targeted Industries
Education 1
Financial Services 1
Business Services 1
Technology 1
Tradecraft & Infrastructure
0
Documented tools
14 / 34
MITRE tactics / techniques
4
Known leak sites
Targeted Organizations
Claims by stormous
Low
10 GB leaked Ransomware Claim: katholiekamersfoort.nl
katholiekamersfoort.nl
stormous
Ransomware Education
Jun 7, 2026 Critical
700 GB leaked Ransomware Claim: arc-reins.com + fidelityunited.ae UPDATE-FULL DATA DUMP
arc-reins.com + fidelityunited.ae UPDATE-FULL DATA DUMP
stormous
Ransomware Financial Services
May 15, 2026 Low
Ransomware Claim: cgcsa.co.za
cgcsa.co.za
stormous
Ransomware Business Services
May 3, 2026 Low
Ransomware Claim: FANASA.COM
FANASA.COM
stormous
Ransomware
May 3, 2026 Low
Ransomware Claim: or-technology.com
or-technology.com
stormous
Ransomware Technology
May 3, 2026