Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Valencialeaks

ValenciaLeaks is a data-extortion group that surfaced in August–September 2024, focused on exfiltrating large volumes of data and publishing it on a dedicated leak site, with documented victims including the City of Pleasanton, CA (283 GB exfiltrated) and pharmaceutical firm Duo Pharma Biotech.

Victims
5
 
First Discovered
2024-09-10
victim
Last Discovered
2024-09-18
victim
Inactive Since
1yr
more than
Avg Delay
-8
days
Infostealer
40.0%
victims with domain
Countries
5
hit
View Victims on World Map View Group Statistics

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon Valencia Ransomware No 2026-04-28T07:22:39 6doyqxqqj36vnedtt2zwxmngx52mgyp7brbrtwkyd75jgiolocoybgid.onion

Target
Top 5 Activity Sectors
  • Business Services 2
  • Manufacturing 1
  • Healthcare 1
  • Public Sector 1
Top 5 Countries
  • BD flag Bangladesh 1
  • LU flag Luxembourg 1
  • MY flag Malaysia 1
  • ES flag Spain 1
  • US flag United States 1

Heatmap

YARA Rules (1)

Victims (5)
Logo
Discovered: 2024-09-18 (1y ago)
Data Exfiltrated : 200MB - Leak Date : 21.08.2024:00:01…
Logo
Discovered: 2024-09-18 (1y ago)
Data Exfiltrated : 7.1GB - Leak Date : 23.08.2024:00:01…
Logo
Discovered: 2024-09-18 (1y ago)
Data Exfiltrated : 25.7GB - Leak Date : 23.08.2024:04:00…
Logo
Discovered: 2024-09-18 (1y ago)
Data Exfiltrated : ???GB - Leak Date : 04.10.2024:00:01…
Logo
Discovered: 2024-09-10 (1y ago)  ·  Attack est.: 2024-09-18
Data Exfiltrated : 283GB - Leak Date : 10.09.2024:03:06…