haron
2 incidentes
0 paises
0 sectores
ransomware RU Ultimo: 2026-06-29
Haron is a ransomware group that emerged in July 2021, distinguished by its practice of borrowing elements from other established ransomware operations. The group's primary motivation is financial gain, achieved through double extortion tactics. It notably utilizes a leaked builder for the Thanos ransomware, written in C#, and mimics the negotiation and leak site designs of the defunct Avaddon ransomware group. While often compared to Avaddon, analysts generally consider Haron a distinct entity that leveraged existing resources rather than a direct rebranding, evidenced by its use of a different ransomware codebase. The group was observed to have initially insecure authentication processes for its dark web infrastructure.
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
Paises objetivo (SOCRadar)
Australia
Canada
United Kingdom
Lebanon
United States
Sectores objetivo (SOCRadar)
Software PublishersEnterprises & HoldingAir TransportationManufacturingConstructionPublic AdministrationEducational ServicesWholesale TradeEnergy & Utilities Insurance
URLs nuevas detectadas en IntelTracker