rift.cysentrix
← Back to actors

Threat actor

Helix

5 observed events

AIHelix has been observed in five recorded events, all characterized as ransomware activity. No specific sectors or countries were recorded in connection with this actor.

Activity type

Ransomware
5

Verification

Claim
5

Top sectors

Not identified

Top countries

Not identified

Observed events

Claim High Ransomware

Venture Logistics

SharePoint libraries staged T1 (least) → T4 (most). Release countdown live on Helix. Tiers unlock by stage when each set timer reaches 0.

Actor Helix 1 source
Records Undisclosed
Claim High Ransomware

Uber

SharePoint libraries staged T1 (least) → T4 (most). Release countdown live on Helix. Tiers unlock by stage when each set timer reaches 0.

Actor Helix 1 source
Records Undisclosed
Claim High Ransomware

Highwoods Properties

SharePoint libraries staged T1 (least) → T4 (most). Release countdown live on Helix. Tiers unlock by stage when each set timer reaches 0.

Actor Helix 1 source
Records Undisclosed
Claim High Ransomware

Morguard

Morguard reached out, took extensions, then ignored the negotiation with no real offer. Contacting us and stalling is not a strategy. Deadlines stand. Silence after outreach gets a private board and a countdown then publication.

Actor Helix 1 source
Records Undisclosed
Claim High Ransomware

Westland Insurance

Westland reached out, got the full demand, then stalled with no serious number. Contacting us and dragging process is not negotiation.

Actor Helix 1 source
Records Undisclosed