linkc
5 incidentes
1 paises
3 sectores
ransomware Ultimo: 2026-06-29
Aliases: bisonal, tonto, tontoteam, APT CARETO, APT RANCOR
Linkc is a ransomware group that first appeared in January 2025, operating a Tor-based data leak site to execute double-extortion attacks for financial gain. The group distinguishes itself by its focused targeting of US-based entities in the artificial intelligence, cloud computing, aerospace, and manufacturing sectors, specifically aiming to exfiltrate highly sensitive intellectual property such as AI model source code, driverless system blueprints, and customer datasets. This specialized targeting, coupled with ransom demands as high as $15 million, underscores their intent to monetize critical organizational data and intellectual property rather than merely disrupting operations. There is no indication that Linkc operates under multiple names, but it should not be confused with Lynx ransomware, a distinct group.
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
Paises objetivo (SOCRadar)
United Kingdom
Mexico
United States
Sectores atacados
Software (1)
Technology (1)
Manufacturing (2)
Sectores objetivo (SOCRadar)
Other Information ServicesSoftware PublishersManufacturingElectrical Equipment, Appliance, and Component ManufacturingPublic AdministrationEducational ServicesData Processing ServicesSpace & DefenseInsuranceAircraft Manufacturing
URLs nuevas detectadas en IntelTracker
Victimas (3)