eraleign (apt73)
ACTIVEransomware group
Rebrand to Bashe in October 2024. <br/>Eraliegn, self-styled as APT73 and formerly known as Bashe, surfaced in April 2024. Rather than conducting real ransomware campaigns, the group specializes in fabricating data breach narratives, curating or reusing existing leaked data (often from years-old breaches) and presenting it on a Tor-hosted leak site to project credibility. They claim to have breached organizations across sectors—such as banking, travel, manufacturing, and IT—targeting entities in countries including the United Kingdom, India, Indonesia, France, and Canada. However, threat analysis shows these claims are deceptive in nature rather than demonstrative of technical prowess or active network compromise.
6
Jun 22, 2024
Apr 13, 2026
Victims (6)
ifmis.go.ke
Integrated Financial Management Information System (IFMIS) is a government system in Kenya that i...
whessoe.com.my
Whessoe Engineering (Malaysia) Sdn Bhd is an engineering company in Malaysia that designs and bui...
olpro.com.my
OLPRO Engineering Sdn Bhd is an engineering company in Malaysia that designs and manufactures ind...
phb.com
PHB Inc. is an industrial company in the United States that manufactures equipment and metal stru...
egov.sc
eGov Seychelles is a government portal in Seychelles that provides online public services and ele...
asunim.co
Asunim is a company operating in the field of renewable energy, which is engaged in the developme...
Infrastructure
http://basheqtvzqwz4vp6ks5lm2ocq7i6tozqgf6vjcasj4ezmsy4bkpshhyd.onion/never crawled
http://bashed52orwi7qoyvmcfkdnuaogta4inpojfd6cthzkp4qpsq64ux4ad.onionnever crawled
http://bashedl53memptddxzb4kr5mnkzse4fmhpqeq7jb4srndswar46nofid.onionnever crawled
http://bashefe5uezp2jtxpk24b2pyfnnfyguicgrgqufgu57mfluegotbeayd.onionnever crawled
http://bashei5oy4zvmf2letnupwhgprdkjyssm3zxj2oyr6wfezkf3elehzqd.onionnever crawled
http://eraleignews.com/never crawled
http://wn6vonooq6fggjdgyocp7bioykmfjket7sbp47cwhgubvowwd7ws5pyd.onion/never crawled
http://bashe4aec32kr6zbifwd5x6xgjsmhg4tbowrbx4pneqhc5mqooyifpid.onion/never crawled
http://7bbqrijcds5sgji3kiwo5o5qgxfgoyufykhzfdo6xl3qbdes2e7tdyad.onionnever crawled
http://qku4reiyfcs2vqq5tow2uprhyqhweo56lrgs6457svr3ej4ton5frkad.onionnever crawled