Australia

payload

Payload is a ransomware group that emerged in early 2026, using Babuk-derived source code targeting both Windows and ESXi systems with cross-platform double-extortion attacks against healthcare, energy, real estate, and agriculture sectors, claiming 12 victims across seven countries within hours of launching its leak site.

First seen 2026-02-17 · Last seen 2026-08-21 · 1 Australia claims

Tactics: Execution, Stealth, Discovery, Impact, Defense Impairment

Cached from ransomware.live. 2026-09-19 PT. Leak sites are not linked.

TFE Group

AU

Discovered: 2026-04-16 <span class="ransom-ago">(5mo ago)</span>

TFE Group is a company that operates in the Architecture, Engineering & Design industry.