radar
3 incidentes
1 paises
2 sectores
ransomware DE Ultimo: 2026-06-29
Aliases: Dispossessor, VICE SPIDER, DEV-0832, Vanilla Tempest, Vicesociety, PrintNightmare, HelloKitty, Zeppelin ransomware, APT GOLDENJACKAL
Radar, also widely known as Dispossessor, emerged as a criminal entity in August 2023, evolving from an initial phase where it primarily functioned as a data broker, republishing exfiltrated data from other ransomware groups such as LockBit, CL0P, Hunters International, and 8Base to pressure victims. This group transitioned to operating its own ransomware-as-a-service (RaaS) model, developing custom ransomware builds for its attacks. Radar is motivated by financial gain through dual-extortion tactics, involving both data encryption and exfiltration. What specifically sets Radar apart is its unique progression from a data broker leveraging other groups' stolen data to a full-fledged ransomware operation, mimicking the infrastructure and branding of prominent groups like LockBit. The group's activities were ultimately disrupted by a coordinated international law enforcement operation in August 2024, leading to the seizure of its global infrastructure.
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
| Tipo | Estado | Host / enlace | Title / ultimo titulo |
| DLS / leak site | seized | ransomware.anggipradana.com | Ransomware Group: radar |
| DLS / leak site | unknown | nitter.net | Ido Cohen: The attackers never rest... and neither do we. Meet RedAct, a newly tracked ransomware group. The group has already published 2 victims and states that it is driven purely by financial gain—not politics or hacktivism. According to its public message, organizations that refuse to negotiate or fail to meet ransom demands should expect their stolen data to be published. Another emerging threat worth keeping on your radar. |
| X/Twitter | unknown | x.com | Ido Cohen: The attackers never rest... and neither do we. Meet RedAct, a newly tracked ransomware group. The group has already published 2 victims and states that it is driven purely by financial gain—not politics or hacktivism. According to its public message, organizations that refuse to negotiate or fail to meet ransom demands should expect their stolen data to be published. Another emerging threat worth keeping on your radar. |
Paises objetivo (SOCRadar)
United Arab Emirates
Argentina
Australia
BelgiumBermuda
Brazil
Canada
Switzerland
Chile
China
Sectores atacados
Financial Services (1)
Healthcare (1)
Sectores objetivo (SOCRadar)
Construction of BuildingsFood ManufacturingOther Information ServicesCredit UnionsRail TransportationSoftware PublishersReal EstateRental and Leasing ServicesHospitalsAccommodation
URLs nuevas detectadas en IntelTracker
Victimas (1)