Ransomware victim disclosure
← All victimsWelcome to phish.pw
Claimed by stormous · listed 19 days ago
Status timeline
- Listed
May 2, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profilephish.pw appears to be an underground cybercriminal forum operated by or affiliated with the Stormous ransomware group and associates including Lapsus$, GhostSec, and RedRaas. It is not a legitimate commercial company but rather a platform for sharing phishing techniques and social engineering methods. No physical address, employee count, or founding date is available.
- Industry
- Cybercriminal Forum & Phishing Services
Attack summary
Severity: low — This entry does not represent an attack on an identifiable victim company. It is a listing for what appears to be the threat actors' own criminal forum, with no evidence of data exfiltration, encryption, or operational impact on any third party.The post does not describe an attack on a victim company; instead it appears to be a self-promotional listing for the operators' own forum at phish.pw, advertising phishing and social engineering resources. No encryption or exfiltration of victim data is claimed.
What the group claims
A forum created by the operators of Stormous and many of their affiliates, including members from Lapsus$, GhostSec, RedRaas, and others. This forum offers the latest phishing techniques and social engineering methods used in cutting-edge hacking strategies.
Source
Indexed 19 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
