Hacktivist Group

Stormous

Active since 2021

Stormous is a politically motivated hacking group that uses ransomware to make statements. They started supporting Russia but now seem to attack anyone they can for publicity and money.

Overview

Stormous is a hacktivist group that combines ransomware attacks with political messaging. They initially supported Russia during the Ukraine conflict but have evolved into opportunistic attackers.

Target Industries

Government, Critical Infrastructure, Technology, Energy

Target Regions

Europe, United States, Ukraine

Is your business exposed?

Tactics, Techniques & Procedures

  • Hacktivist ransomware
  • Political targeting
  • Data leak threats
  • Social media operations
  • Opportunistic attacks

Known Tools & Malware

GhostLocker, Stormous ransomware, Telegram coordination

Notable Campaigns

Pro-Russia Operations (2022)

Initial attacks aligned with Russian interests during Ukraine invasion.

GhostLocker Partnership (2024)

Collaboration with GhostSec on GhostLocker ransomware.

MITRE ATT&CK Techniques

T1486, T1567, T1078, T1566

Defense Recommendations

  1. 1.

    Assess hacktivist targeting risk

  2. 2.

    Monitor for politically motivated threats

  3. 3.

    Implement standard ransomware defenses

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required