CoomingProject is a ransomware group known for double-extortion tactics and is currently inactive.
Analyst brief
CoomingProject is a ransomware group that emerged around 2021, operating a double-extortion scheme using multiple Tor-based leak sites to pressure victims. They typically targeted victims through data exfiltration and encryption for financial gain, until French authorities identified six members in February 2022, leading to the group's infrastructure going offline. Key TTPs included double-extortion and hosting of victim data on public leak sites. Defenders should note that the group is currently inactive, but should remain vigilant for any re-emergence or reuse of their ransomware families and associated IOCs by other threat actors.
cooming
crime
CoomingProject is a ransomware group that emerged around 2021 and operated a double-extortion scheme with multiple Tor-based leak sites; six members were identified by French authorities in February 2022, after which the group's infrastructure went offline.