๐Ÿ‡ง๐Ÿ‡ฆ

Bosnia and Herzegovina

BA

Ransomware victim intelligence profile ยท Ranked #118 globally ยท Updated: Sep 6, 2026

4
Total Victims
0% of global total
#118
Global Rank
4
Active Groups
4
Sectors Targeted

ThreatAI Analysis

Compiled from this database and the ransomware.live profiles of the groups active in Bosnia and Herzegovina. Figures are computed from the tracked records, not inferred.

Bosnia and Herzegovina reports 4 victimations globally ranked 116th for ransomware activity; notable threat groups are Lockbit5, Spacebears, Qilin with tech, healthcare, manufacturing sectors hardest hit.

Bosnia and Herzegovina in the global picture

Bosnia and Herzegovina accounts for 4 of the ransomware disclosures tracked here, ranking #118 worldwide and making up 0% of the global total. The sectors listed most often are Technology, Healthcare, Manufacturing.

Who is most active in Bosnia and Herzegovina

Lockbit5 โ€” 1 victims in Bosnia and Herzegovina. Spacebears โ€” 1 victims in Bosnia and Herzegovina. Qilin โ€” 1 victims in Bosnia and Herzegovina. Qilin ransomware was first observed in July of 2022.

Ransomware Threat Profile: Bosnia and Herzegovina

Bosnia and Herzegovina ranks #118 globally for ransomware attacks, with 4 confirmed victims in this database โ€” representing 0% of the worldwide total. The most active ransomware groups targeting Bosnia and Herzegovina include Lockbit5, Spacebears, Qilin.

The most frequently targeted industries in Bosnia and Herzegovina are Technology, Healthcare, Manufacturing. The healthcare sector is particularly vulnerable because attacks on hospitals and medical providers can create life-threatening situations, increasing pressure to pay ransoms quickly.

Bosnia and Herzegovina's attack volume reflects broader trends in ransomware targeting: the volume of attacks reflects the country's integration into the global economy and the proliferation of ransomware operations that target organisations of all sizes worldwide.

Organisations in Bosnia and Herzegovina should consider the active threat groups documented here when assessing their cybersecurity posture, implementing detection rules, and prioritising incident response planning.

Recent Victims in Bosnia and Herzegovina (showing 4 of 4)

# Organization Group Sector Date
1 sportvision.ba Lockbit5 Technology Apr 14, 2026
2 AbelZeta Spacebears Healthcare Mar 12, 2026
3 Centralno grijanje Tuzla Qilin Manufacturing May 27, 2025
4 International University of Sarajevo Medusa Education Nov 4, 2024

Frequently Asked Questions

How many ransomware attacks have occurred in Bosnia and Herzegovina?

Bosnia and Herzegovina has recorded 4 ransomware victim disclosures in this database, ranking #118 globally. This represents 0% of all tracked ransomware attacks worldwide.

Which ransomware groups target Bosnia and Herzegovina?

The ransomware groups most active in Bosnia and Herzegovina are Lockbit5, Spacebears, Qilin, Medusa. These groups collectively account for the majority of victim disclosures attributed to Bosnia and Herzegovina.

Which industries are most targeted by ransomware in Bosnia and Herzegovina?

In Bosnia and Herzegovina, the most frequently targeted sectors are Technology, Healthcare, Manufacturing. These industries hold valuable data and often have critical operational requirements that make them attractive ransomware targets.

How does Bosnia and Herzegovina rank globally for ransomware attacks?

Bosnia and Herzegovina ranks #118 globally for ransomware attacks with 4 victim disclosures, representing 0% of the worldwide total of 21,388 tracked victims.

How can organisations in Bosnia and Herzegovina protect against ransomware?

Organisations in Bosnia and Herzegovina should implement a layered security approach including regular offline backups, network segmentation, multi-factor authentication, endpoint detection and response (EDR) tools, and employee security awareness training. Monitoring threat intelligence feeds for active groups targeting Bosnia and Herzegovina is also recommended.