Uptime Hamster: 10d 5h 55mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza INDRIK SPIDER

INDRIK SPIDER

0 incidentes 0 paises 0 sectores apt RU Ultimo: -
Aliases: DEV-0243, EvilCorp, Manatee Tempest, UNC2165, Onslow o Dataresolution, figuran TA542, Mealybug, Emotet, Criminal, Evil Corp, G0092, WastedLocker, Ta505, SectorJ04, GOLD TAHOE, Dridex, otros, TA542
Ver en IntelTracker → APTTrail →
INDRIK SPIDER is a financially motivated cybercriminal group of Russian origin, active since June 2014, known for its longevity, adaptability, and organizational structure, including its close ties to Russian state intelligence services which tasked them with cyber-attacks and espionage against NATO nations prior to 2019. The group initially focused on the Dridex banking Trojan before expanding into ransomware operations with strains like BitPaymer, WastedLocker, and Hades in mid-2017, pioneering 'big game hunting' against high-value organizations. Following international sanctions and indictments in late 2019, INDRIK SPIDER evolved its tactics, diversified its toolset, and some members have since engaged as LockBit ransomware affiliates, maintaining a persistent threat. The group is also widely recognized by aliases such as Evil Corp, DEV-0243, Manatee Tempest, and UNC2165, and has connections with BITWISE SPIDER.

Aliases del actor

DEV-0243EvilCorpManatee TempestUNC2165Onslow o Dataresolutionfiguran TA542MealybugEmotetCriminalEvil CorpG0092WastedLockerTa505SectorJ04GOLD TAHOEDridexotrosTA542

Actores similares

indrik-spideractor · 1Scattered Spideractor · 2doppel-spideractor · 1salty-spideractor · 1brain-spideractor · 1skeleton-spideractor · 1bamboo-spideractor · 1andromeda-spideractor · 1cobalt-spideractor · 1boson-spideractor · 1
Motivacion