logo

Ransomware Tracker (Entry #234): 0mid16B

ID: 1c3fcf55-b3ce-5e55-93d3-ecfc518ec21b

STIX ID: report--1c3fcf55-b3ce-5e55-93d3-ecfc518ec21b

Feed Name: WatchGuard Secplicity Blog

Threat Score
70/100

Date Published: 2025-03-29

Date Updated: 2026-05-01

Author: Ryan Estes

...
...

**Executive summary:** 0mid16B (also known as DESORDEN, Chaoscc, GHOSTR and other aliases) was a financially motivated Singaporean national who conducted years-long extortion operations targeting primarily ASEAN countries and later Western victims; his methods included data theft, partial data leaks, selling stolen data on forums, forced disclosure, DDoS, and occasional use of ransomware, and he communicated via Matrix, Telegram, TeamViewer, Jabber, TOX and multiple hacking forums before being arrested in February 2025 and cooperating with law enforcement.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.