RANSOMWARE VICTIM
Estrela
bavacai📅 May 18, 2026
8
same group
Attack Intelligence
Estrela was compromised in a ransomware attack attributed to bavacai in May 2026. The organization, operating in an undisclosed sector in Unknown, was added to the group's data leak site as part of an extortion campaign.
bavacai operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
Organization with 11 emails extracted. Domain: estrela.ind
Other Victims — bavacai (8)
Quick Facts
Attack DateMay 18, 2026
Intel Sourceransomlook
Threat Group
External Links
Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.