Uptime Hamster: 12d 21h 54mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza vendetta

vendetta

2 incidentes 1 paises 0 sectores ransomware TR Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
Vendetta is identified as a sophisticated ransomware group that emerged in early 2023, specifically discovered in February 2023 as a variant of the RSAUtil ransomware family, often noted as a rebranding of Cuba ransomware. This group differentiates itself by employing double extortion tactics, wherein sensitive data is exfiltrated prior to encryption, with threats of public release if ransom demands are not met. Their primary motivation is financial gain, targeting large organizations across various sectors with high-profile attacks and demanding significant ransom payments.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / onionunknowncuba4ikm4jakjgmkezytyawtdgr2xymvy6nvzgw5cglswg3si76icnqd.onionvendetta
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: vendetta
Malware asociado
Arkei, win.emotet
Tecnicas MITRE
T1056, T1106, T1531, T1059, T1140, T1187
CVEs relacionadas
CVE-2023-36884, CVE-2023-29324, CVE-2023-23397, CVE-2023-21715, CVE-2023-20198, CVE-2017-11882
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (SOCRadar)

AustriaAustraliaCanadaChileChinaCubaEgyptSpainFranceGreece

Sectores objetivo (SOCRadar)

Construction of BuildingsSoftware PublishersEnterprises & HoldingAccommodationManufacturingConstructionPublic AdministrationOil & GasEducational ServicesWholesale Trade

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com