54bb47h

Dark since January 15, 2022
12 victims named on the leak site
0 in the last 30 days
0 in the last 12 months
Nov 2021 first victim we recorded
Jan 15, 2022 most recent victim posted
3 leak sites tracked

Data as of August 16, 2026.

What industries 54bb47h targets

Sector identified for 1 of 12 victims.

Education1

Where the victims are located

Country identified for 3 of 12 victims.

Canada1
United States1
Italy1

Every 54bb47h victim

VictimSectorCountryPosted
jaleelholdings.comNot identifiedNot identifiedJan 15, 2022
aslnapoli3sud.itNot identifiedItalyJan 12, 2022
summitcollege.eduEducationUnited StatesJan 4, 2022
trigyn.comNot identifiedNot identifiedDec 28, 2021
prenax.comNot identifiedNot identifiedDec 20, 2021
socialenterprise.caNot identifiedCanadaDec 12, 2021
mcpsrvs.comNot identifiedNot identifiedNov 19, 2021
roctechnologies.comNot identifiedNot identifiedNov 19, 2021
starlinesupply.comNot identifiedNot identifiedNov 19, 2021
allenisd.orgNot identifiedNot identifiedNov 18, 2021
flagshipcompaniesgroup.comNot identifiedNot identifiedNov 18, 2021
stoningtonschools.orgNot identifiedNot identifiedNov 18, 2021

Browse recent data breaches for more.

54bb47h leak sites

Addresses we've seen 54bb47h publish victims from. Any .onion address needs the Tor Browser.

  • 54bb47h.blog
  • anonfiles.com
  • mega.nz

54bb47h questions

Is 54bb47h still active?

Not for over a year. The last victim we recorded was January 15, 2022. The leak site has published nothing since, though the data it already leaked is still out there.

How many victims has 54bb47h claimed?

54bb47h has named 12 victims on its leak site since we started tracking it. That counts organizations, not leaked files. A single victim often accounts for thousands of published files.

When did 54bb47h first appear?

The first victim we recorded for 54bb47h was posted on November 18, 2021. That's when the group entered our collection, which isn't necessarily when it started operating.

Has 54bb47h already got your credentials?

Check whether your employees' logins have leaked on the dark web before they're exploited.

Check your exposure →

Continuous dark web monitoring alerts you when your company's data shows up, whether that's employee credentials or files published after an attack.