blackshrantac
8 incidentes
5 paises
5 sectores
ransomware US Ultimo: 2026-06-29
Black Shrantac, also referred to as BlackShrantac, is a financially motivated ransomware group that initiated its public operations on September 17, 2025. This group is characterized by a disciplined and operationally sophisticated approach, notably distinguishing itself through a deliberate preference for legitimate commercial tools, known as living-off-the-land tactics, rather than custom malware. This strategy makes detection more challenging and attribution more complex. Black Shrantac primarily employs a double extortion model, exfiltrating large volumes of sensitive data before encrypting victim systems and then leveraging a dedicated Tor-based leak site to pressure organizations into paying a ransom. The group communicates with victims exclusively via Tox, a peer-to-peer encrypted messaging protocol, further complicating monitoring efforts. While opportunistic in its targeting across various industries and geographies, Black Shrantac's operational maturity and rapid deployment c
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
Paises objetivo (SOCRadar)
United Arab Emirates
Austria
Australia
Bahrain
Switzerland
Germany
Egypt
United Kingdom
Indonesia
India
Sectores atacados
Software (1)
Public Sector (1)
Manufacturing (3)
Healthcare (1)
Business Services (1)
Sectores objetivo (SOCRadar)
Construction of BuildingsOther Information ServicesSoftware PublishersAccommodationAir TransportationManufacturingConstructionElectrical Equipment, Appliance, and Component ManufacturingPublic AdministrationAdministrative &Waste Management
URLs nuevas detectadas en IntelTracker
Victimas (6)