LinkC Pub

Aliases: LinkC

First seen
2025-01-29 00:00:00
Primary motivation
financial-gain
Sophistication
intermediate
Resource level
organization
Actor type
criminal
Profile updated
2026-07-07 12:20:42

Targeted industries: technology-and-telecommunications

Targeted regions: country_code:us

Context

Linkc is a newly emerged ransomware group that operates an onion-based data leak site and has claimed one victim, a U.S.-based AI and cloud service provider, H2O.ai, which was attacked on January 29, 2025. The group demanded a ransom of $15 million for data decryption and removal, showcasing access to sensitive information, including GPT model source code and customer data. Linkc's DLS is well-constructed and quick to load, indicating potential for future victim listings. However, there is currently no public acknowledgment from the victim, and the group has not engaged in discussions on cybercrime forums.

Reports & references

  • redhotcyber.com — Linkc Ransomware The New Cybercriminal Group Targeting Artificial Intelligence Data (report)
  • cyfirma.com — Tracking Ransomware February 2025 (report)
  • cyjax.com — New Extortion Ransomware Group Linkc Emerges What You Need To Know (report)

External references