DOPPEL SPIDER
0 incidentes
0 paises
0 sectores
apt RU Ultimo: -
Aliases: GOLD HERON
DOPPEL SPIDER is a financially motivated cybercriminal group first observed in April 2019, primarily known for operating the DoppelPaymer ransomware and its successor, Grief. Assessed with high confidence to be of Russian origin, the group's core motivation is financial gain through targeted ransomware attacks against large organizations. While initially operating DoppelPaymer as a fork of the BitPaymer ransomware, they evolved their operations to include the Grief ransomware, aiming to evade sanctions and continue their high-value campaigns. A defining characteristic of DOPPEL SPIDER is its use of double extortion tactics, which involves not only encrypting a victim's data but also exfiltrating sensitive information and threatening its public release if the ransom is not paid. The group is also distinct for directly contacting victims, sometimes via telephone, to pressure them into paying the ransom. This group is sometimes referred to by the alias GOLD HERON and its ransomware operat
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
| Tipo | Estado | Host / enlace | Title / ultimo titulo |
| DLS / leak site | unknown | duckduckgo.com | DOPPEL SPIDER |
| DLS / leak site | unknown | duckduckgo.com | DOPPEL SPIDER |