
qilin
๐ข Active
Status
Active
Total Victims
1,350
Active Sites
5 / 9
Has Parser
No
Top Target Countries
๐บ๐ธ US๐จ๐ฆ CA๐ซ๐ท FR๐ฌ๐ง GB๐ช๐ธ ES
Top Target Industries
ManufacturingBusiness ServicesHealthcareTechnologyConstruction
Country Distribution
๐บ๐ธ US628
๐จ๐ฆ CA74
๐ซ๐ท FR68
๐ฌ๐ง GB50
๐ช๐ธ ES43
๐ฉ๐ช DE40
๐ฎ๐น IT37
๐ฏ๐ต JP31
Site Locations (9)
Description
Qilin ransomware was first observed in July of 2022. Qilin Ransomware is written in Golang and supports multiple encryption modes; all of which are controlled by the operator. Qilin actors practice double extortion โ demanding payment for a decryptor, as well as for the non-release of stolen data.
Ransom Notes (4)
README-RECOVER.txt.qilin.agendaQilin Ransomware Note
Recent Victims (1,350 total)
View All| Victim | Country | Industry | Date |
|---|---|---|---|
University of Applied Sciences,Worms www.hs-worms.de | Unknown | N/A | Feb 6, 2026 |
Conpet S.A. (COTE.RO) www.conpet.ro | Unknown | N/A | Feb 6, 2026 |
La Fabrica www.lafabrica.com.ar | Unknown | N/A | Feb 6, 2026 |
INGUS www.ingus-net.de | Unknown | N/A | Feb 5, 2026 |
Sprokkit www.sprokkit.com |