Uptime Hamster: 62d 4h 40mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

10,901Incidentes
2,776Filtrados
1,119Actores
20,693IOCs visibles
Limpiar
Mapa
77
Paises afectados
Alertas
5,893
Amenazas recientes
Brechas
7,163
Filtraciones y victimas
Hackeos
8,853
Incidentes investigables

Actividad filtrada

TTPs principales

T1566302
T15622
T10782
T10592
T10551
T10211
T14861
T15671

Actores

anggipradana175
bushidouk55
x-cti47
deadlock40
thegentlemen23
the-gentlemen23
settra20
dragonforce18
russia18
qilin17

Paises

United States1046
United Kingdom131
China47
Russia45
Brazil40
France35
Germany33
Canada27
Australia24
India23

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States1046 incidentes United Kingdom131 incidentes China47 incidentes Russia45 incidentes Brazil40 incidentes France35 incidentes Germany33 incidentes Canada27 incidentes Australia24 incidentes India23 incidentes Italy23 incidentes Iran23 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
2,776 resultados · pagina 20/78Exportar CSV
Ido Cohen: Sector Spotlight: HealthCare Over the past 7 days, our AI-powered platform tracked ransomware and cyber extortion groups actively targeting the HealthCare sector.2026-06-25
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Group-IB Threat Intelligence: The Y2K Operators threat actor is using sophisticated #socialengineering lures, disguising payloads as legitimate software, cracked applications, gaming cheat tools (e.g., Roblox), and used PDF decoy documents.2026-06-25
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: Group-IB telemetry has identified over 62,000 compromised endpoints across more than 160 countries infected with #MilleniumRAT (4.x). The infection velocity is alarming, with over 39,000 of these detections occurring in Q1 2026 alone, representing 64% of all infections. This demonstrates a rapidly accelerating global campaign.2026-06-25
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: Pinned: #MilleniumRAT (v4.x) marks a significant evolution in the threat landscape. The #malware has been completely rewritten from .NET to a native C++ application, removing .NET dependencies. This architectural shift enables greater stealth and resilience, making detection more challenging. The #Telegram Bot API remains the core C2 mechanism.2026-06-25
x-ctimalwareUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Ransomware News: «Ðобилизовали веÑÑ ÐºÐ¾Ð»Ð»ÐµÐºÑив»: «УÑагоÑмолзавод» пеÑевели в «ÑÑÑной Ñежим» из-за кибеÑаÑаки2026-06-24
anggipradanareportUnknown
«Ðобилизовали веÑÑ ÐºÐ¾Ð»Ð»ÐµÐºÑив»: «УÑагоÑмолзавод» пеÑевели в «ÑÑÑной Ñежим» из-за кибеÑаÑаки Noticia sobre ransomware publicad...
Ransomware News: Route Mobile: கொலம்பியாவில் சைபர் தாக்குதல்! பெற்றோர் நிறுவனத்துக்கு பாதிப்பில்லையா?2026-06-24
anggipradanareportUnknown
Route Mobile: கொலம்பியாவில் சைபர் தாக்குதல்! பெற்றோர் நிறுவனத்துக்கு பாதிப்பில்லையா? Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware D...
Ransomware News: Plitvice Lakes System Falls Victim to Cyber Attack - Total Croatia2026-06-24
anggipradanareportCroatia
Plitvice Lakes System Falls Victim to Cyber Attack - Total Croatia Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
StealthMole: RT by @stealthmole_int: Following the Money: Mapping KidBin's Cryptocurrency Infrastructure Across Darkweb Note: When visiting this blog, you may see a "Sensitive Content" warning from Blogger. This warning is automatically generated by Google's systems based on the topics discussed on the site and does not necessarily indicate the presence of graphic or inappropriate material.2026-06-24
stealthmole_intcampaignUnknown
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Ido Cohen: We continue to monitor additional sources in the darknet. Here are some of the events that were added to our platform in the last week. 1 A major breach exposed over 500GB of sensitive personal information from job seekers, posing a high risk of identity theft and fraud. 2 Remote access to POS systems is being sold, threatening financial data and sensitive customer information across large retail businesses globally.2026-06-24
ido_cohen2breachUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Hackmanac: RT by @H4ckmanac: Cyber Alert ‼ Japan - 𝗞𝗗𝗗𝗜 KDDI warned users to change their passwords after disclosing unauthorised access to its email system used by six internet service providers (ISPs), potentially exposing up to 14.22 million email accounts. The compromised information may include email addresses and passwords.2026-06-24
H4ckmanacbreachJapan
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Ransomware News: Uwaga. Atak cybernetyczny w Urzędzie Miejskim w Nowej Rudzie2026-06-23
anggipradanareportUnknown
Uwaga. Atak cybernetyczny w Urzędzie Miejskim w Nowej Rudzie Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware News: Bajaj Auto hit by ransomware attack on 23 June 2026 - Business Upturn2026-06-23
anggipradanareportUnknown
Bajaj Auto hit by ransomware attack on 23 June 2026 - Business Upturn Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware Victim: H* (Icarus)2026-06-23
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ransomware Victim: G* (Icarus)2026-06-23
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ransomware Victim: C* (Icarus)2026-06-23
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ido Cohen: The Icarus supply chain extortion campaign continues to unfold. The group has now added 5 additional victims, all with their identities partially concealed. The guessing game has officially begun. How many organizations were impacted through this supply chain incident? And are we witnessing the emergence of a serious competitor to CLOP in the supply chain extortion arena? We'll know more soon.2026-06-23
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: APT73 continues to expand its operations. The group has added 3 new victims to its leak site, including a government entity in South America and a major international airport operator in Central Europe serving tens of millions of passengers annually. APT73 was added to the DarkFeed platform in mid-2024 and has since claimed 110+ victims.2026-06-23
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Meet Wallstreet — not the financial market, but the latest ransomware group added to our monitoring platform. The group's leak site currently lists a single victim: a manufacturing company from India. With 1,000+ ransomware and cyber extortion victims already tracked since the beginning of the year, keeping up with the threat landscape is becoming increasingly challenging.2026-06-23
ido_cohen2ransomwareIndiaT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Hackmanac: #HackTuesday Hack Tuesday: Week 17 - 23 Jun 2026 374 cyber attacks across 62 countries The most active threat actor last week was NoName057(16) claiming responsibility for 38 cyber attacks. The USA is the most affected country, accounting for 21.4% of incidents, with 80 cyber attacks. The Gov / Mil / LE sector is the most targeted, accounting for 19.5% of incidents with 73 cyber attacks. The estimated Critical cyber attacks account to 54 (14.4% of the total).2026-06-23
H4ckmanaccampaignUnited States
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Ransomware News: フェースグループでシステム障害、ランサムウェア 被害の恐れ-個人情報・取引情報への影響を調査中|セキュリティニュースのセキュリティ対策Lab2026-06-22
anggipradanareportUnknown
フェースグループでシステム障害、ランサムウェア 被害の恐れ-個人情報・取引情報への影響を調査中|セキュリティニュースのセキュリティ対策Lab Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware News: Today's Information2026-06-22
anggipradanareportUnknown
Today's Information Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware News: 易發 代子公司東野精機(股)公司及日福精工(股)公司公告資訊系統遭受駭客網路攻擊。-MoneyDJ理財網2026-06-22
anggipradanareportUnknown
易發 代子公司東野精機(股)公司及日福精工(股)公司公告資訊系統遭受駭客網路攻擊。-MoneyDJ理財網 Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware Victim: HDS (Hdscorp) (Icarus)2026-06-22
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ido Cohen: Threat Group Update Prinz Eugen has launched a newly redesigned leak site and updated its public profile. According to the group's latest statement, it describes itself as a for-profit organization that "specializes in hacking" while claiming it currently does not operate a Ransomware-as-a-Service (RaaS) program. The group also stated that membership intake is currently closed and limited to existing core members.2026-06-22
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Weekly Ransomware & Cyber Extortion Intelligence Report Our platform continuously monitors ransomware groups and darknet activity worldwide.2026-06-22
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Hackmanac: RT by @H4ckmanac: #MondayPoll: What worries you most for H2 2026?2026-06-22
H4ckmanacransomwareUnknownT1566
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Ransomware News: DEà Hastanesi'nde kriz üstüne kriz: Hizmetler durma noktasına geldi2026-06-21
anggipradanareportUnknown
DEà Hastanesi'nde kriz üstüne kriz: Hizmetler durma noktasına geldi Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Artistic Smiles2026-06-21
nightspireransomwareUnited States
El 21 de junio de 2026, la empresa Artistic Smiles fue afectada por un ataque cibernético atribuido al grupo malicioso "nightspire". El incidente involucró el secuestro de datos críticos y l...
Ido Cohen: Supply Chain Extortion Alert The Icarus ransomware group has escalated pressure tactics against a major Canadian consulting and competitive intelligence provider. After initially naming the organization, the group is now threatening to release data belonging to the company's clients, giving them a deadline to make contact before publication begins.2026-06-21
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: New Ransomware Groups Added to DarkFeed Over the past few days, we added two new ransomware/extortion groups to the DarkFeed intelligence platform: SevyWare A newly launched RaaS operation claiming ties to former members of established ransomware groups. The operators are actively recruiting Initial Access Brokers and insiders while promoting an aggressive affiliate-focused model.2026-06-21
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Nh Thnh Ph?2026-06-21
novaransomwareUnited States
El grupo "nova" ha comprometido los datos de la plataforma real estate "Nh Thnh Ph?" en una operación de ciberataque. La violación ocurrió el 21 de junio de 2026, revelando información sensi...
JCPenney2026-06-20
breachUnited States
JCPenney reportó una filtración de datos el 20 de junio de 2026, clasificada como parte de un incidente de seguridad relacionado con la filtración. Según las informaciones públicas verificad...
Wekby2026-06-20
chinareferenceChina
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.
Karma Panda2026-06-20
chinareferenceChina
Karma Panda es un actor APT (Advanced Persistent Threat) asociado al grupo regional de China, conocido por su actividad cibernética maliciosas. Se ha identificado con alias como CactusPete, ...
Twisted Panda2026-06-20
chinareferenceChina
El grupo Twisted Panda fue mencionado en un documento de 2022 publicado por research.checkpoint.com, donde se describe como parte de una operación de espionaje estatal contra instituciones d...
Yanbian Gang2026-06-20
chinareferenceChina
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.