Uptime Hamster: 10d 11h 12mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Icarus

Icarus

1 incidentes 0 paises 0 sectores ransomware Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
Icarus is a recently emerged ransomware group first observed in April 2026. The group operates with the primary motivation of financial gain, achieved by exploiting sensitive data from compromised organizations. They distinguish themselves by functioning as a data broker, employing double extortion tactics that include encrypting victim data and threatening free data leaks on their leak sites to compel payment. This group is distinct from the older Icarus Stealer malware, which is an infostealer.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / onionunknowne6ujsppajgb756x7x5ykdryvlcjynltb52eiwi6pd4bfwo6hddd6neid.onionKlue.com
DLS / leak siteunknownransomware.anggipradana.comRansomware Victim: HDS (Hdscorp) (Icarus)
DLS / leak siteunknownnitter.netIdo Cohen: The Icarus supply chain extortion campaign continues to unfold. The group has now added 5 additional victims, all with their identities partially concealed. The guessing game has officially begun. How many organizations were impacted through this supply chain incident? And are we witnessing the emergence of a serious competitor to CLOP in the supply chain extortion arena? We'll know more soon.
X/Twitterunknownx.comIdo Cohen: Supply Chain Extortion Alert The Icarus ransomware group has escalated pressure tactics against a major Canadian consulting and competitive intelligence provider. After initially naming the organization, the group is now threatening to release data belonging to the company's clients, giving them a deadline to make contact before publication begins.
DLS / leak siteunknownnitter.netIdo Cohen: Supply Chain Extortion Alert The Icarus ransomware group has escalated pressure tactics against a major Canadian consulting and competitive intelligence provider. After initially naming the organization, the group is now threatening to release data belonging to the company's clients, giving them a deadline to make contact before publication begins.
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

IndonesiaUnited States

Sectores objetivo (SOCRadar)

RetailInformation ServicesFinanceEducational ServicesPublic AdministrationData Processing ServicesE-CommerceSoftware PublishersBankingComputer Systems Design and Related Services

URLs nuevas detectadas en IntelTracker

e6ujsppajgb756x7x5ykdryvlcjynltb52eiwi6pd4bfwo6hddd6neid.onion ransomware.anggipradana.com