Ransomware Intelligence

bashe

Ransomware group profile

5Victims
Czech RepublicSource country
65Impact score
Also Known As
Bashe
APT73
Apt 73

Description

Eraleign is a high-profile ransomware group that specializes in advanced cyberattacks targeting large organizations for maximum financial gain. Known for their sophisticated encryption methods and double extortion tactics, they employ custom-built malware to infiltrate networks and have shifted their focus towards critical infrastructure and supply chain attacks.

Key insights

  • Utilizes rapid encryption methods and multi-stage infection chains.
  • Targets multiple sectors, especially critical infrastructure and healthcare.
  • Employs double extortion tactics by threatening to leak stolen data.
  • Gains initial access via phishing campaigns and known vulnerabilities.
  • Demonstrates a trend towards leveraging REvil's toolkit and tactics.

Threat Level & Status Breakdown

For bashe · Based on incidents in selected period

2.8threat level
Aggressiveness6/ 10
Lethality0/ 10
Criticality2.3/ 10

Status Breakdown

Claimed100.0%5
First seenJan 2026
Last seenFeb 2026
Avg ransom
Payment rate
Statusactive
Sophistication0
Last updatedJun 2, 2026

Recent activity

Monthly attack count for bashe in the selected period

5Total attacks
3peak in Feb
2.5avg / month
↑ 1 vs first month
JanFeb00.751.52.253

No intelligence data for this group.

TTPs & Attack Vectors

Tools, initial access, and MITRE ATT&CK techniques for bashe

Other

T1486

T1486

T1490

T1490

T1562

T1562

T1040

T1040

T1071

T1071

T1078

T1078

T1059

T1059

T1021

T1021

T1021.001

T1021.001

T1547

T1547

Victims(50)

CompanyDomainCountryIndustryStatusDiscovered
elections.mia.gov.am from WOLVES OF TURANAM ArmeniaGovernment & Defense
Claimed
1 day ago
tkgm.gov.trTR TurkeyGovernment & Defense
Claimed
12 days ago
minsa.com.mxminsa.com.mxMX MexicoManufacturing
Claimed
12 days ago
tvnmedia.comPA PanamaTechnology
Claimed
12 days ago
alkaloid.com.mkMK North MacedoniaHealthcare
Claimed
13 days ago
narit.or.thTH ThailandGovernment & Defense
Claimed
13 days ago
grupopetersen.com.argrupopetersen.com.arAR ArgentinaFinancial Services
Claimed
13 days ago
ungererandcompany.comUS United StatesManufacturing
Claimed
13 days ago
medikaplaza.comID IndonesiaManufacturing
Claimed
about 1 month ago
jgpetrucci.comUS United StatesProfessional Services
Claimed
about 1 month ago
providentgh.comprovidentgh.comGH GhanaFinancial Services
Claimed
about 1 month ago
grupo-principal.comMX MexicoRetail & E-Commerce
Claimed
about 1 month ago
cofaco.comPE PeruRetail & E-Commerce
Claimed
about 1 month ago
dunav.comRS SerbiaFinancial Services
Claimed
about 1 month ago
algosaibi-gtb.comSA Saudi ArabiaHealthcare
Claimed
about 1 month ago
alx-pc.comEG EgyptEnergy & Utilities
Claimed
about 1 month ago
arrawdah.org.saSA Saudi ArabiaHealthcare
Claimed
about 1 month ago
ifmis.go.keKE KenyaGovernment & Defense
Claimed
about 2 months ago
whessoe.com.myMY MalaysiaManufacturing
Claimed
about 2 months ago
olpro.com.myMY MalaysiaRetail & E-Commerce
Claimed
about 2 months ago

Page 1 of 3