THREATOPS
THREAT OPSThreat News › [Helix] AmSpec posted to leak site

[Helix] AmSpec posted to leak site

medransomware_livePublished 2026-08-22

Ransomware group: Helix Victim: AmSpec Victim website: n/a Sector: Energy & Utilities Country: US Discovered: 2026-08-22T19:21:33.550146+00:00 Leak-site post: http://helixr2sncrd3ndsz5oho6mzqw3x5u7mvox5zcsngc5wm7v4l5k7oryd.onion/p/05d7e14bd3e7d7efce2406aad744dc6daa15edfbca7d38cb8ced622125d3c989 Description: AmSpec is live. T1 unlocks on the current 24-hour cadence, then 24 hours per remaining tier

Indicators of compromise

Original source: http://helixr2sncrd3ndsz5oho6mzqw3x5u7mvox5zcsngc5wm7v4l5k7oryd.onion/p/05d7e14bd3e7d7efce2406aad744dc6daa15edfbca7d38cb8ced622125d3c989