Uptime Hamster: 11d 8h 9mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza blacktor

blacktor

2 incidentes 2 paises 0 sectores ransomware Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
Blacktor is a low-profile data breach and extortion group first observed around late 2021. The group is primarily motivated by financial gain, conducting operations that involve encrypting victim data and maintaining a dedicated Tor-based leak site to facilitate double extortion. It is characterized by its minimal public threat intelligence coverage, making it distinct from more widely reported ransomware operations.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / onionunknownbl4cktorpms2gybrcyt52aakcxt6yn37byb65uama5cimhifcscnqkid.onionblacktor
DLS / leak siteupransomware.anggipradana.comRansomware Group: blacktor
Tecnicas MITRE
T1566.001 (Spearphishing Attachment), T1078 (Valid Accounts), T1059 (Command and Scripting Interpreter), T1021 (Remote Services), T1486 (Data Encrypted for Impact)
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

Indonesia (1) Italy (1)

Paises objetivo (SOCRadar)

FranceIndonesiaItalyUnited StatesVenezuela, Bolivarian Republic of

Sectores objetivo (SOCRadar)

Construction of BuildingsSoftware PublishersHospitalsAccommodationManufacturingConstructionPublic AdministrationEducational ServicesEnergy & Utilities Insurance

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com