// THREAT ACTOR
LA-PIOVRA_
DormantLA-PIOVRA is a ransomware operator tracked through its public data-leak infrastructure. The group operates under the double-extortion model that defines the modern ransomware ecosystem — file encryption combined with the threat of stolen-data publication on a public leak site — and continues to post fresh victim claims as part of an ongoing extortion campaign.
For Ransomnews editorial coverage of LA-PIOVRA — incident write-ups, attribution notes, and additional context — see the Threat Groups archive or run a site search.
Victims by year
- 2023 2
Leak site mirrors
3 mirrors tracked, 0 currently reachable. These are criminal-infrastructure URLs — links are deliberately not provided.
-
et22fibzuzfyzgurm35sttm52qbzvdgzy5qhzy46a3gmkrrht3lec5ad.onionLa Piovra Ransomware snapshot · 2024-07-11 13:02 -
h3txev6jev7rcm6p2qkxn2vctybi4dvochr3inymzgif53n2j2oqviqd.onionLa Piovra Ransomware – a new cartel snapshot · 2024-07-11 13:02 -
wx3djgl4cacl6y4x7r4e4mbqrrub24ectue7ixyix2du25nfowtvfiyd.onionLa Piovra Ransomware - Members Only snapshot · 2024-07-11 13:02
Recent victims
The 50 most recent victims claimed by LA-PIOVRA. Total in the index: 2.
| Date listed | Victim | Description |
|---|---|---|
| 2023-06-09 | Hello world! | Hello fellow criminals. This is MrMantle with a new gig, representing … |
| 2023-06-09 | MegaCorp One | In case you were wondering how we did it, your entire website code is … |