Radiant is a ransomware group known for targeting education and leaking children's sensitive data.
Analyst brief
Radiant is a financially motivated ransomware group that emerged in September 2025, operating double- and single-extortion attacks without known affiliates. They primarily target sensitive sectors such as childcare and education, having drawn widespread condemnation for leaking photographs, names, and home addresses of over 8,000 children from UK-based Kido International. Their TTPs focus on data exfiltration for extortion pressure, but specific C2 infrastructure or initial access vectors remain undisclosed in available data. Defenders should prioritize incident response planning with legal and PR teams, conduct thorough inventories of sensitive personal data, and ensure offline, immutable backups are in place to counter extortion-based ransomware tactics.
radiant
activecrime
Radiant is a financially motivated ransomware group that emerged in September 2025, conducting double- and single-extortion attacks without affiliates, drawing widespread condemnation after attacking UK childcare provider Kido International and publishing photographs, names, and home addresses of over 8,000 children.