devman
Ransomware / extortion group tracked from leak-site posts
Victims · 7d
0flat
Victims · 30d
0active targets
Victims · 90d
0
All-time (tracked)
49since 2025-04-06
Last post
06-07 12:33UTC
Estimated earnings
—public reporting
Profile not written yet: the pipeline profiles the most active groups first, a few per run.
Leak-site victims49 posts · newest first
| Victim | Discovered | Details |
|---|---|---|
| NSSF KENYA(negotiation started) /nssf.zip - first samle /nssfwriteup.html - writeup | · Jun 7, 2025 | — |
| DHL THAILAND | · Jun 2, 2025 | — |
| lantro.com | · May 31, 2025 | — |
| dmbarone.com | · May 26, 2025 | — |
| Gobierno del Estado de Colima | · May 26, 2025 | — |
| SAVE THIS PGP MESSAGE | · May 25, 2025 | — |
| www.nijar.es | · May 25, 2025 | — |
| www.paragonradiology.com | · May 23, 2025 | — |
| netstar.co.za | · May 23, 2025 | — |
| NSSF KENYA(negotiation started) | · May 23, 2025 | — |
| NSSF KENYA | · May 19, 2025 | — |
| TBD KOREA | · May 19, 2025 | — |
| TBD HONK KONG | · May 19, 2025 | — |
| TBD GREECE | · May 19, 2025 | — |
| TOHO-CO | · May 19, 2025 | — |
| TBD KENYA | · May 19, 2025 | — |
| piriou.vn | · May 19, 2025 | — |
| tvgoiania.com.br | · May 11, 2025 | — |
| Pienaar Brothers (DevMan Ransomware) | · May 10, 2025 | — |
| Victim from Japan | · May 10, 2025 | — |
| dailynews.co.th (DevMan Ransomware) | · May 9, 2025 | — |
| https://www.gmanetwork.com/news/(DevMan Ransomware) | · May 7, 2025 | — |
| https://pestbusters.com.sg/ | · May 5, 2025 | — |
| smvthailand.com | · May 2, 2025 | — |
| Chinese Healthcare Organisation (TBD) | · May 1, 2025 | — |
| Singapour Factory | · May 1, 2025 | — |
| South African IT firm (TBD) | · May 1, 2025 | — |
| South African Hr company (TBD) | · May 1, 2025 | — |
| dovesit.co.za (Ransomhub) | · May 1, 2025 | — |
| EU victim (To be discoled) | · Apr 25, 2025 | — |
| China Harbour (s) Engeneiring Company (Dragon Force Attack) FILE SAMPLE 1 avaliable /CHEC/ | · Apr 24, 2025 | — |
| Premier Meats South Africa(Only files where exflitrated) | · Apr 20, 2025 | — |
| Feel Four (QILIN Attack) | · Apr 20, 2025 | — |
| Singapour Victim (To be discoled) | · Apr 20, 2025 | — |
| Honk Kong Victim (To be discoled) | · Apr 20, 2025 | — |
| China Harbour (s) Engeneiring Company (Dragon Force Attack) | · Apr 20, 2025 | — |
| FEELFOUR (QILIN) | · Apr 13, 2025 | — |
| Company located in catalonia ES (Name - soon) | · Apr 12, 2025 | — |
| Med institute (Name - soon) | · Apr 12, 2025 | — |
| Prvate hospital (Name - soon) | · Apr 12, 2025 | — |
| Bangkok Electronics Co., Ltd (QILIN) | · Apr 12, 2025 | — |
| Tawasol (APOS Attack) | · Apr 7, 2025 | — |
| Texas Construction Firm(QILIN) | · Apr 7, 2025 | — |
| Optimax Technology(QILIN) | · Apr 7, 2025 | — |
| Doumen.fr(QILIN) | · Apr 7, 2025 | — |
| Dubai Company | · Apr 6, 2025 | — |
| Texas Construction Firm | · Apr 6, 2025 | — |
| Optimax Technology | · Apr 6, 2025 | — |
| doumen.fr | · Apr 6, 2025 | — |
In the newsAll →
No articles mention this group yet.
Victim posts come from the group's leak site via RansomLook and are claims, not confirmations. The profile is written by the model from public reporting and refreshed monthly; earnings figures cite their source and year. First tracked .