logo

Iranians Indicted in SamSam Ransomware Scheme

ID: ca02bf5c-fe5e-5765-b172-96c21682bba7

STIX ID: report--ca02bf5c-fe5e-5765-b172-96c21682bba7

Feed Name: Security Ledger

Threat Score
75/100

Date Published: 2018-11-29

Date Updated: 2026-04-26

Author: Elizabeth Montalbano

...
...

The article reports on a U.S. federal indictment charging two Iran-based individuals with operating the SamSam ransomware campaign (Dec 2015–Sep 2018) that impacted over 200 victims—including hospitals, cities, ports, and universities—caused more than $30M in losses, and collected roughly $6M in ransom; investigators detail use of Tor, Iran-based Bitcoin exchanges, extensive reconnaissance, and coordinated prosecutions by U.S. and international agencies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.