Uptime Hamster: 12d 19h 57mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza radar

radar

3 incidentes 1 paises 2 sectores ransomware DE Ultimo: 2026-06-29
Aliases: Dispossessor, VICE SPIDER, DEV-0832, Vanilla Tempest, Vicesociety, PrintNightmare, HelloKitty, Zeppelin ransomware, APT GOLDENJACKAL
Ver en IntelTracker → APTTrail →
Radar, also widely known as Dispossessor, emerged as a criminal entity in August 2023, evolving from an initial phase where it primarily functioned as a data broker, republishing exfiltrated data from other ransomware groups such as LockBit, CL0P, Hunters International, and 8Base to pressure victims. This group transitioned to operating its own ransomware-as-a-service (RaaS) model, developing custom ransomware builds for its attacks. Radar is motivated by financial gain through dual-extortion tactics, involving both data encryption and exfiltration. What specifically sets Radar apart is its unique progression from a data broker leveraging other groups' stolen data to a full-fledged ransomware operation, mimicking the infrastructure and branding of prominent groups like LockBit. The group's activities were ultimately disrupted by a coordinated international law enforcement operation in August 2024, leading to the seizure of its global infrastructure.

Aliases del actor

DispossessorVICE SPIDERDEV-0832Vanilla TempestVicesocietyPrintNightmareHelloKittyZeppelin ransomwareAPT GOLDENJACKAL

Actores similares

VICE SPIDERapt · 0apt-goldenjackalactor · 1SCATTERED SPIDERapt · 0INDRIK SPIDERapt · 0MALLARD SPIDERapt · 0MUMMY SPIDERapt · 0SMOKY SPIDERapt · 0SALTY SPIDERapt · 0WIZARD SPIDERapt · 0CIRCUS SPIDERapt · 0

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteseizedransomware.anggipradana.comRansomware Group: radar
DLS / leak siteunknownnitter.netIdo Cohen: The attackers never rest... and neither do we. Meet RedAct, a newly tracked ransomware group. The group has already published 2 victims and states that it is driven purely by financial gain—not politics or hacktivism. According to its public message, organizations that refuse to negotiate or fail to meet ransom demands should expect their stolen data to be published. Another emerging threat worth keeping on your radar.
X/Twitterunknownx.comIdo Cohen: The attackers never rest... and neither do we. Meet RedAct, a newly tracked ransomware group. The group has already published 2 victims and states that it is driven purely by financial gain—not politics or hacktivism. According to its public message, organizations that refuse to negotiate or fail to meet ransom demands should expect their stolen data to be published. Another emerging threat worth keeping on your radar.
Victimas
1
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (SOCRadar)

United Arab EmiratesArgentinaAustraliaBelgiumBermudaBrazilCanadaSwitzerlandChileChina

Sectores atacados

Financial Services (1) Healthcare (1)

Sectores objetivo (SOCRadar)

Construction of BuildingsFood ManufacturingOther Information ServicesCredit UnionsRail TransportationSoftware PublishersReal EstateRental and Leasing ServicesHospitalsAccommodation

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com

Victimas (1)

Bentley Capital Ventures29 Apr 2026
Ransomware United States Financial Services
Resumen Bentley Capital Ventures es una empresa que se enfoca en apoyar a pequeños empresarios en la obtención de capital mediante soluciones financie…