Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Sensayq

SenSayQ is an emerging ransomware actor that appeared in mid-2024 using a leaked LockBit 3.0 builder for double-extortion attacks; Group-IB links it operationally to the Brain Cipher group and its siblings EstateRansomware and "Noname," suggesting a shared operator.

Victims
2
 
First Victim
2024-06-04
(est. attack date)
Discovery Date
2024-06-04
 
Last Seen
2024-06-04
 
Inactive Since
2yrs
more than
Avg Delay
N/A
attack→claim
Infostealer
0.0%
victims with domain
Countries
2
hit
Uptime
— avg (30d)
View Victims on World Map View Group Statistics

Known Locations (3)
Favicon Title Type Available Last Visit Server Info FQDN
favicon SenSayQ No 2026-04-28T07:21:42 gmixcebhni6c3kcf5m7xxybomaphj7pizoqtxiqmrz5wsh6g6x5s2wqd.onion
favicon SenSayQ No 2026-04-28T07:21:20 159.69.60.54.
favicon SenSayQ No 2026-04-28T07:23:41 152.89.198.177.

Target
Top 5 Activity Sectors
  • Financial Services 1
  • Manufacturing 1
Top 5 Countries
  • IN flag India 1
  • IT flag Italy 1

Heatmap

Ransom Notes (1)

YARA Rules (1)

Indicators of Compromise (IoCs) (1)
Email 1
Type IOC
Email qn.support@cyberfear.com

Victims (2)
Logo
Discovered: 2024-06-04 (2y ago)
No description available
Logo
Discovered: 2024-06-04 (2y ago)
No description available